First published: Mon Apr 13 2015(Updated: )
The DNS implementation in Cisco Adaptive Security Appliance (ASA) Software 7.2 before 7.2(5.16), 8.2 before 8.2(5.57), 8.3 before 8.3(2.44), 8.4 before 8.4(7.28), 8.5 before 8.5(1.24), 8.6 before 8.6(1.17), 8.7 before 8.7(1.16), 9.0 before 9.0(4.33), 9.1 before 9.1(6.1), 9.2 before 9.2(3.4), and 9.3 before 9.3(3) allows man-in-the-middle attackers to cause a denial of service (memory consumption or device outage) by triggering outbound DNS queries and then sending crafted responses to these queries, aka Bug ID CSCuq77655.
Credit: ykramarz@cisco.com ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Adaptive Security Appliance | =7.0.1 | |
Cisco Adaptive Security Appliance | =7.0.1.4 | |
Cisco Adaptive Security Appliance | =7.0.2 | |
Cisco Adaptive Security Appliance | =7.0.3 | |
Cisco Adaptive Security Appliance | =7.0.4 | |
Cisco Adaptive Security Appliance | =7.0.4.2 | |
Cisco Adaptive Security Appliance | =7.0.5 | |
Cisco Adaptive Security Appliance | =7.0.5.12 | |
Cisco Adaptive Security Appliance Software | =7.0.6 | |
Cisco Adaptive Security Appliance Software | =7.0.6.4 | |
Cisco Adaptive Security Appliance Software | =7.0.6.8 | |
Cisco Adaptive Security Appliance Software | =7.0.6.18 | |
Cisco Adaptive Security Appliance Software | =7.0.6.22 | |
Cisco Adaptive Security Appliance Software | =7.0.6.26 | |
Cisco Adaptive Security Appliance Software | =7.0.6.29 | |
Cisco Adaptive Security Appliance Software | =7.0.6.32 | |
Cisco Adaptive Security Appliance Software | =7.0.7 | |
Cisco Adaptive Security Appliance Software | =7.0.7.1 | |
Cisco Adaptive Security Appliance Software | =7.0.7.4 | |
Cisco Adaptive Security Appliance Software | =7.0.7.9 | |
Cisco Adaptive Security Appliance Software | =7.0.7.12 | |
Cisco Adaptive Security Appliance Software | =7.0.8 | |
Cisco Adaptive Security Appliance Software | =7.0.8.2 | |
Cisco Adaptive Security Appliance Software | =7.0.8.8 | |
Cisco Adaptive Security Appliance Software | =7.0.8.12 | |
Cisco Adaptive Security Appliance Software | =7.0.8.13 | |
Cisco Adaptive Security Appliance Software | =7.1.2 | |
Cisco Adaptive Security Appliance Software | =7.1.2.16 | |
Cisco Adaptive Security Appliance Software | =7.1.2.20 | |
Cisco Adaptive Security Appliance Software | =7.1.2.24 | |
Cisco Adaptive Security Appliance Software | =7.1.2.28 | |
Cisco Adaptive Security Appliance Software | =7.1.2.38 | |
Cisco Adaptive Security Appliance Software | =7.1.2.42 | |
Cisco Adaptive Security Appliance Software | =7.1.2.46 | |
Cisco Adaptive Security Appliance Software | =7.1.2.49 | |
Cisco Adaptive Security Appliance Software | =7.1.2.53 | |
Cisco Adaptive Security Appliance Software | =7.1.2.61 | |
Cisco Adaptive Security Appliance Software | =7.1.2.64 | |
Cisco Adaptive Security Appliance Software | =7.1.2.72 | |
Cisco Adaptive Security Appliance Software | =7.1.2.81 | |
Cisco Adaptive Security Appliance Software | =7.2.1 | |
Cisco Adaptive Security Appliance Software | =7.2.1.9 | |
Cisco Adaptive Security Appliance Software | =7.2.1.13 | |
Cisco Adaptive Security Appliance Software | =7.2.1.19 | |
Cisco Adaptive Security Appliance Software | =7.2.1.24 | |
Cisco Adaptive Security Appliance Software | =7.2.2 | |
Cisco Adaptive Security Appliance Software | =7.2.2.6 | |
Cisco Adaptive Security Appliance Software | =7.2.2.10 | |
Cisco Adaptive Security Appliance Software | =7.2.2.14 | |
Cisco Adaptive Security Appliance Software | =7.2.2.18 | |
Cisco Adaptive Security Appliance Software | =7.2.2.19 | |
Cisco Adaptive Security Appliance Software | =7.2.2.22 | |
Cisco Adaptive Security Appliance Software | =7.2.2.34 | |
Cisco Adaptive Security Appliance Software | =7.2.3 | |
Cisco Adaptive Security Appliance Software | =7.2.3.1 | |
Cisco Adaptive Security Appliance Software | =7.2.3.12 | |
Cisco Adaptive Security Appliance Software | =7.2.3.16 | |
Cisco Adaptive Security Appliance Software | =7.2.4 | |
Cisco Adaptive Security Appliance Software | =7.2.4.6 | |
Cisco Adaptive Security Appliance Software | =7.2.4.9 | |
Cisco Adaptive Security Appliance Software | =7.2.4.18 | |
Cisco Adaptive Security Appliance Software | =7.2.4.25 | |
Cisco Adaptive Security Appliance Software | =7.2.4.27 | |
Cisco Adaptive Security Appliance Software | =7.2.4.30 | |
Cisco Adaptive Security Appliance Software | =7.2.4.33 | |
Cisco Adaptive Security Appliance Software | =7.2.5 | |
Cisco Adaptive Security Appliance Software | =7.2.5.2 | |
Cisco Adaptive Security Appliance Software | =7.2.5.4 | |
Cisco Adaptive Security Appliance Software | =7.2.5.7 | |
Cisco Adaptive Security Appliance Software | =7.2.5.8 | |
Cisco Adaptive Security Appliance Software | =7.2.5.10 | |
Cisco Adaptive Security Appliance Software | =7.2.5.12 | |
Cisco Adaptive Security Appliance Software | =8.0.1.2 | |
Cisco Adaptive Security Appliance Software | =8.0.2 | |
Cisco Adaptive Security Appliance Software | =8.0.2.11 | |
Cisco Adaptive Security Appliance Software | =8.0.2.15 | |
Cisco Adaptive Security Appliance Software | =8.0.3 | |
Cisco Adaptive Security Appliance Software | =8.0.3.6 | |
Cisco Adaptive Security Appliance Software | =8.0.3.12 | |
Cisco Adaptive Security Appliance Software | =8.0.3.19 | |
Cisco Adaptive Security Appliance Software | =8.0.4 | |
Cisco Adaptive Security Appliance Software | =8.0.4.3 | |
Cisco Adaptive Security Appliance Software | =8.0.4.9 | |
Cisco Adaptive Security Appliance Software | =8.0.4.16 | |
Cisco Adaptive Security Appliance Software | =8.0.4.23 | |
Cisco Adaptive Security Appliance Software | =8.0.4.25 | |
Cisco Adaptive Security Appliance Software | =8.0.4.28 | |
Cisco Adaptive Security Appliance Software | =8.0.4.31 | |
Cisco Adaptive Security Appliance Software | =8.0.4.32 | |
Cisco Adaptive Security Appliance Software | =8.0.4.33 | |
Cisco Adaptive Security Appliance Software | =8.0.5 | |
Cisco Adaptive Security Appliance Software | =8.0.5.20 | |
Cisco Adaptive Security Appliance Software | =8.0.5.23 | |
Cisco Adaptive Security Appliance Software | =8.0.5.25 | |
Cisco Adaptive Security Appliance Software | =8.0.5.27 | |
Cisco Adaptive Security Appliance Software | =8.0.5.28 | |
Cisco Adaptive Security Appliance Software | =8.0.5.31 | |
Cisco Adaptive Security Appliance Software | =8.1.1 | |
Cisco Adaptive Security Appliance Software | =8.1.1.6 | |
Cisco Adaptive Security Appliance Software | =8.1.2 | |
Cisco Adaptive Security Appliance Software | =8.1.2.13 | |
Cisco Adaptive Security Appliance Software | =8.1.2.15 | |
Cisco Adaptive Security Appliance Software | =8.1.2.16 | |
Cisco Adaptive Security Appliance Software | =8.1.2.19 | |
Cisco Adaptive Security Appliance Software | =8.1.2.23 | |
Cisco Adaptive Security Appliance Software | =8.1.2.24 | |
Cisco Adaptive Security Appliance Software | =8.1.2.49 | |
Cisco Adaptive Security Appliance Software | =8.1.2.50 | |
Cisco Adaptive Security Appliance Software | =8.1.2.55 | |
Cisco Adaptive Security Appliance Software | =8.1.2.56 | |
Cisco Adaptive Security Appliance Software | =8.2.0.45 | |
Cisco Adaptive Security Appliance Software | =8.2.1 | |
Cisco Adaptive Security Appliance Software | =8.2.1.11 | |
Cisco Adaptive Security Appliance Software | =8.2.2 | |
Cisco Adaptive Security Appliance Software | =8.2.2.9 | |
Cisco Adaptive Security Appliance Software | =8.2.2.10 | |
Cisco Adaptive Security Appliance Software | =8.2.2.12 | |
Cisco Adaptive Security Appliance Software | =8.2.2.16 | |
Cisco Adaptive Security Appliance Software | =8.2.2.17 | |
Cisco Adaptive Security Appliance Software | =8.2.3 | |
Cisco Adaptive Security Appliance Software | =8.2.4 | |
Cisco Adaptive Security Appliance Software | =8.2.4.1 | |
Cisco Adaptive Security Appliance Software | =8.2.4.4 | |
Cisco Adaptive Security Appliance Software | =8.2.5 | |
Cisco Adaptive Security Appliance Software | =8.2.5.13 | |
Cisco Adaptive Security Appliance Software | =8.2.5.22 | |
Cisco Adaptive Security Appliance Software | =8.2.5.26 | |
Cisco Adaptive Security Appliance Software | =8.2.5.33 | |
Cisco Adaptive Security Appliance Software | =8.2.5.40 | |
Cisco Adaptive Security Appliance Software | =8.2.5.41 | |
Cisco Adaptive Security Appliance Software | =8.2.5.46 | |
Cisco Adaptive Security Appliance Software | =8.2.5.48 | |
Cisco Adaptive Security Appliance Software | =8.2.5.50 | |
Cisco Adaptive Security Appliance Software | =8.2.5.52 | |
Cisco Adaptive Security Appliance Software | =8.2.5.55 | |
Cisco Adaptive Security Appliance Software | =8.2.5.57 | |
Cisco Adaptive Security Appliance Software | =8.3.1 | |
Cisco Adaptive Security Appliance Software | =8.3.1.1 | |
Cisco Adaptive Security Appliance Software | =8.3.1.4 | |
Cisco Adaptive Security Appliance Software | =8.3.1.6 | |
Cisco Adaptive Security Appliance Software | =8.3.2 | |
Cisco Adaptive Security Appliance Software | =8.3.2.4 | |
Cisco Adaptive Security Appliance Software | =8.3.2.13 | |
Cisco Adaptive Security Appliance Software | =8.3.2.23 | |
Cisco Adaptive Security Appliance Software | =8.3.2.25 | |
Cisco Adaptive Security Appliance Software | =8.3.2.31 | |
Cisco Adaptive Security Appliance Software | =8.3.2.33 | |
Cisco Adaptive Security Appliance Software | =8.3.2.34 | |
Cisco Adaptive Security Appliance Software | =8.3.2.37 | |
Cisco Adaptive Security Appliance Software | =8.3.2.39 | |
Cisco Adaptive Security Appliance Software | =8.3.2.40 | |
Cisco Adaptive Security Appliance Software | =8.3.2.41 | |
Cisco Adaptive Security Appliance Software | =8.3.2.44 | |
Cisco Adaptive Security Appliance Software | =8.4.1 | |
Cisco Adaptive Security Appliance Software | =8.4.1.3 | |
Cisco Adaptive Security Appliance Software | =8.4.1.11 | |
Cisco Adaptive Security Appliance Software | =8.4.2 | |
Cisco Adaptive Security Appliance Software | =8.4.2.1 | |
Cisco Adaptive Security Appliance Software | =8.4.2.8 | |
Cisco Adaptive Security Appliance Software | =8.4.3 | |
Cisco Adaptive Security Appliance Software | =8.4.3.8 | |
Cisco Adaptive Security Appliance Software | =8.4.3.9 | |
Cisco Adaptive Security Appliance Software | =8.4.4 | |
Cisco Adaptive Security Appliance Software | =8.4.4.1 | |
Cisco Adaptive Security Appliance Software | =8.4.4.3 | |
Cisco Adaptive Security Appliance Software | =8.4.4.5 | |
Cisco Adaptive Security Appliance Software | =8.4.4.9 | |
Cisco Adaptive Security Appliance Software | =8.4.5 | |
Cisco Adaptive Security Appliance Software | =8.4.5.6 | |
Cisco Adaptive Security Appliance Software | =8.4.6 | |
Cisco Adaptive Security Appliance Software | =8.4.7 | |
Cisco Adaptive Security Appliance Software | =8.4.7.3 | |
Cisco Adaptive Security Appliance Software | =8.4.7.15 | |
Cisco Adaptive Security Appliance Software | =8.4.7.22 | |
Cisco Adaptive Security Appliance Software | =8.4.7.23 | |
Cisco Adaptive Security Appliance Software | =8.4.7.26 | |
Cisco Adaptive Security Appliance Software | =8.5.1 | |
Cisco Adaptive Security Appliance Software | =8.5.1.1 | |
Cisco Adaptive Security Appliance Software | =8.5.1.6 | |
Cisco Adaptive Security Appliance Software | =8.5.1.7 | |
Cisco Adaptive Security Appliance Software | =8.5.1.14 | |
Cisco Adaptive Security Appliance Software | =8.5.1.17 | |
Cisco Adaptive Security Appliance Software | =8.5.1.18 | |
Cisco Adaptive Security Appliance Software | =8.5.1.19 | |
Cisco Adaptive Security Appliance Software | =8.5.1.21 | |
Cisco Adaptive Security Appliance Software | =8.6.1 | |
Cisco Adaptive Security Appliance Software | =8.6.1.1 | |
Cisco Adaptive Security Appliance Software | =8.6.1.2 | |
Cisco Adaptive Security Appliance Software | =8.6.1.5 | |
Cisco Adaptive Security Appliance Software | =8.6.1.10 | |
Cisco Adaptive Security Appliance Software | =8.6.1.12 | |
Cisco Adaptive Security Appliance Software | =8.6.1.13 | |
Cisco Adaptive Security Appliance Software | =8.6.1.14 | |
Cisco Adaptive Security Appliance Software | =8.7.1 | |
Cisco Adaptive Security Appliance Software | =8.7.1.1 | |
Cisco Adaptive Security Appliance Software | =8.7.1.3 | |
Cisco Adaptive Security Appliance Software | =8.7.1.4 | |
Cisco Adaptive Security Appliance Software | =8.7.1.7 | |
Cisco Adaptive Security Appliance Software | =8.7.1.8 | |
Cisco Adaptive Security Appliance Software | =8.7.1.11 | |
Cisco Adaptive Security Appliance Software | =8.7.1.13 | |
Cisco Adaptive Security Appliance Software | =9.0.1 | |
Cisco Adaptive Security Appliance Software | =9.0.2 | |
Cisco Adaptive Security Appliance Software | =9.0.2.10 | |
Cisco Adaptive Security Appliance Software | =9.0.3 | |
Cisco Adaptive Security Appliance Software | =9.0.3.6 | |
Cisco Adaptive Security Appliance Software | =9.0.3.8 | |
Cisco Adaptive Security Appliance Software | =9.0.4 | |
Cisco Adaptive Security Appliance Software | =9.0.4.1 | |
Cisco Adaptive Security Appliance Software | =9.0.4.5 | |
Cisco Adaptive Security Appliance Software | =9.0.4.7 | |
Cisco Adaptive Security Appliance Software | =9.0.4.17 | |
Cisco Adaptive Security Appliance Software | =9.0.4.20 | |
Cisco Adaptive Security Appliance Software | =9.0.4.24 | |
Cisco Adaptive Security Appliance Software | =9.0.4.26 | |
Cisco Adaptive Security Appliance Software | =9.0.4.29 | |
Cisco Adaptive Security Appliance Software | =9.1.1 | |
Cisco Adaptive Security Appliance Software | =9.1.1.4 | |
Cisco Adaptive Security Appliance Software | =9.1.2 | |
Cisco Adaptive Security Appliance Software | =9.1.2.8 | |
Cisco Adaptive Security Appliance Software | =9.1.3 | |
Cisco Adaptive Security Appliance Software | =9.1.3.2 | |
Cisco Adaptive Security Appliance Software | =9.1.4 | |
Cisco Adaptive Security Appliance Software | =9.1.4.5 | |
Cisco Adaptive Security Appliance Software | =9.1.5 | |
Cisco Adaptive Security Appliance Software | =9.1.5.10 | |
Cisco Adaptive Security Appliance Software | =9.1.5.12 | |
Cisco Adaptive Security Appliance Software | =9.1.5.15 | |
Cisco Adaptive Security Appliance Software | =9.1.5.21 | |
Cisco Adaptive Security Appliance Software | =9.1.6 | |
Cisco Adaptive Security Appliance Software | =9.2.1 | |
Cisco Adaptive Security Appliance Software | =9.2.2 | |
Cisco Adaptive Security Appliance Software | =9.2.2.4 | |
Cisco Adaptive Security Appliance Software | =9.2.2.7 | |
Cisco Adaptive Security Appliance Software | =9.2.2.8 | |
Cisco Adaptive Security Appliance Software | =9.2.3 | |
Cisco Adaptive Security Appliance Software | =9.2.3.3 | |
Cisco Adaptive Security Appliance Software | =9.3.1 | |
Cisco Adaptive Security Appliance Software | =9.3.1.1 | |
Cisco Adaptive Security Appliance Software | =9.3.2 | |
Cisco Adaptive Security Appliance Software | =9.3.2.2 | |
Cisco Adaptive Security Appliance Software | =7.0.1 | |
Cisco Adaptive Security Appliance Software | =7.0.1.4 | |
Cisco Adaptive Security Appliance Software | =7.0.2 | |
Cisco Adaptive Security Appliance Software | =7.0.3 | |
Cisco Adaptive Security Appliance Software | =7.0.4 | |
Cisco Adaptive Security Appliance Software | =7.0.4.2 | |
Cisco Adaptive Security Appliance Software | =7.0.5 | |
Cisco Adaptive Security Appliance Software | =7.0.5.12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0676 has a high severity rating due to its potential to allow an attacker to exploit memory corruption vulnerabilities.
To fix CVE-2015-0676, update your Cisco Adaptive Security Appliance Software to the latest recommended version that addresses the vulnerability.
CVE-2015-0676 affects various versions of Cisco Adaptive Security Appliance Software prior to specified updates listed in the advisory.
If exploited, CVE-2015-0676 could lead to denial of service conditions or execution of arbitrary code on the affected devices.
Currently, the recommended action is to upgrade to a patched version as there are no known effective workarounds to mitigate the vulnerability.