CVE-2014-0653: Input Validation
The Identity Firewall (IDFW) functionality in Cisco Adaptive Security Appliance (ASA) Software allows remote attackers to trigger authentication-state modifications via a crafted NetBIOS logout probe response, aka Bug ID CSCuj45340.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-0653?
CVE-2014-0653 has been rated as a medium severity vulnerability.
How do I fix CVE-2014-0653?
To mitigate CVE-2014-0653, users should update their Cisco Adaptive Security Appliance to the latest software version that addresses this vulnerability.
What role does the Identity Firewall play in CVE-2014-0653?
In CVE-2014-0653, the Identity Firewall functionality is exploited through crafted NetBIOS logout probe responses which can modify authentication states.
What type of attacks can exploit CVE-2014-0653?
CVE-2014-0653 can be exploited by remote attackers to trigger unintended authentication-state modifications.
Which Cisco products are affected by CVE-2014-0653?
CVE-2014-0653 affects Cisco Adaptive Security Appliance Software.