First published: Sat Feb 22 2014(Updated: )
The control-plane access-list implementation in Cisco IPS Software before 7.1(8p2)E4 and 7.2 before 7.2(2)E4 allows remote attackers to cause a denial of service (MainApp process outage) via crafted packets to TCP port 7000, aka Bug ID CSCui67394.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IPS Sensor Software | <=7.1\(1\)e4 | |
Cisco IPS Sensor Software | =7.1\(2\)e4 | |
Cisco IPS Sensor Software | =7.1\(3\)e4 | |
Cisco IPS Sensor Software | =7.1\(4\)e4 | |
Cisco IPS Sensor Software | =7.1\(6\)e4 | |
Cisco IPS Sensor Software | =7.1\(7\)e4 | |
Cisco IPS Sensor Software | =7.1\(8\)e4 | |
Cisco IPS Sensor Software | =7.2\(1\)e4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-0719 is classified as a medium severity vulnerability that can lead to a denial of service.
To remediate CVE-2014-0719, upgrade the Cisco IPS Software to versions 7.1(8)p2E4 or 7.2(2)E4 or later.
CVE-2014-0719 affects Cisco IPS Sensor Software versions before 7.1(8)p2E4 and 7.2 before 7.2(2)E4.
CVE-2014-0719 allows remote attackers to perform a denial of service attack via crafted packets.
The MainApp process in Cisco IPS Software is impacted by CVE-2014-0719, leading to outages.