CVE-2015-6324: High severity cisco adaptive security appliance vulnerability
The DHCPv6 relay implementation in Cisco Adaptive Security Appliance (ASA) software 9.0 before 9.0(4.37), 9.1 before 9.1(6.6), 9.2 before 9.2(4), 9.3 before 9.3(3.5), and 9.4 before 9.4(2) allows remote attackers to cause a denial of service (device reload) via crafted DHCPv6 packets, aka Bug IDs CSCus56252 and CSCus57142.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-6324?
CVE-2015-6324 has a severity rating that indicates it allows remote attackers to cause a denial of service, affecting device availability.
How do I fix CVE-2015-6324?
To fix CVE-2015-6324, you should upgrade your Cisco Adaptive Security Appliance software to versions 9.0(4.37), 9.1(6.6), 9.2(4), 9.3(3.5), or 9.4(2) or later.
What affects does CVE-2015-6324 have on systems?
CVE-2015-6324 can cause the affected Cisco Adaptive Security Appliance to reload, leading to a denial of service for legitimate users.
Which versions of Cisco software are affected by CVE-2015-6324?
CVE-2015-6324 affects Cisco Adaptive Security Appliance software versions prior to 9.0(4.37), 9.1(6.6), 9.2(4), 9.3(3.5), and 9.4(2).
Are there any workarounds for CVE-2015-6324?
There are no specific workarounds for CVE-2015-6324; the recommended remediation is to apply the software updates.