First published: Sun Oct 25 2015(Updated: )
The IKEv1 implementation in Cisco Adaptive Security Appliance (ASA) software 7.2 and 8.2 before 8.2(5.58), 8.3 and 8.4 before 8.4(7.29), 8.5 through 8.7 before 8.7(1.17), 9.0 before 9.0(4.37), 9.1 before 9.1(6.8), 9.2 before 9.2(4), and 9.3 before 9.3(3) allows remote attackers to cause a denial of service (device reload) via crafted ISAKMP UDP packets, aka Bug ID CSCus94026.
Credit: ykramarz@cisco.com ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Adaptive Security Appliance | =7.2.1 | |
Cisco Adaptive Security Appliance | =7.2.1.9 | |
Cisco Adaptive Security Appliance | =7.2.1.13 | |
Cisco Adaptive Security Appliance | =7.2.1.19 | |
Cisco Adaptive Security Appliance | =7.2.1.24 | |
Cisco Adaptive Security Appliance | =7.2.2 | |
Cisco Adaptive Security Appliance | =7.2.2.6 | |
Cisco Adaptive Security Appliance | =7.2.2.10 | |
Cisco Adaptive Security Appliance Software | =7.2.2.14 | |
Cisco Adaptive Security Appliance Software | =7.2.2.18 | |
Cisco Adaptive Security Appliance Software | =7.2.2.19 | |
Cisco Adaptive Security Appliance Software | =7.2.2.22 | |
Cisco Adaptive Security Appliance Software | =7.2.2.34 | |
Cisco Adaptive Security Appliance Software | =7.2.3 | |
Cisco Adaptive Security Appliance Software | =7.2.3.1 | |
Cisco Adaptive Security Appliance Software | =7.2.3.12 | |
Cisco Adaptive Security Appliance Software | =7.2.3.16 | |
Cisco Adaptive Security Appliance Software | =7.2.4 | |
Cisco Adaptive Security Appliance Software | =7.2.4.6 | |
Cisco Adaptive Security Appliance Software | =7.2.4.9 | |
Cisco Adaptive Security Appliance Software | =7.2.4.18 | |
Cisco Adaptive Security Appliance Software | =7.2.4.25 | |
Cisco Adaptive Security Appliance Software | =7.2.4.27 | |
Cisco Adaptive Security Appliance Software | =7.2.4.30 | |
Cisco Adaptive Security Appliance Software | =7.2.4.33 | |
Cisco Adaptive Security Appliance Software | =7.2.5 | |
Cisco Adaptive Security Appliance Software | =7.2.5.2 | |
Cisco Adaptive Security Appliance Software | =7.2.5.4 | |
Cisco Adaptive Security Appliance Software | =7.2.5.7 | |
Cisco Adaptive Security Appliance Software | =7.2.5.8 | |
Cisco Adaptive Security Appliance Software | =7.2.5.10 | |
Cisco Adaptive Security Appliance Software | =7.2.5.12 | |
Cisco Adaptive Security Appliance Software | =7.2.5.16 | |
Cisco Adaptive Security Appliance Software | =8.2.0.45 | |
Cisco Adaptive Security Appliance Software | =8.2.1 | |
Cisco Adaptive Security Appliance Software | =8.2.1.11 | |
Cisco Adaptive Security Appliance Software | =8.2.2 | |
Cisco Adaptive Security Appliance Software | =8.2.2.9 | |
Cisco Adaptive Security Appliance Software | =8.2.2.10 | |
Cisco Adaptive Security Appliance Software | =8.2.2.12 | |
Cisco Adaptive Security Appliance Software | =8.2.2.16 | |
Cisco Adaptive Security Appliance Software | =8.2.2.17 | |
Cisco Adaptive Security Appliance Software | =8.2.3 | |
Cisco Adaptive Security Appliance Software | =8.2.4 | |
Cisco Adaptive Security Appliance Software | =8.2.4.1 | |
Cisco Adaptive Security Appliance Software | =8.2.4.4 | |
Cisco Adaptive Security Appliance Software | =8.2.5 | |
Cisco Adaptive Security Appliance Software | =8.2.5.13 | |
Cisco Adaptive Security Appliance Software | =8.2.5.22 | |
Cisco Adaptive Security Appliance Software | =8.2.5.26 | |
Cisco Adaptive Security Appliance Software | =8.2.5.33 | |
Cisco Adaptive Security Appliance Software | =8.2.5.40 | |
Cisco Adaptive Security Appliance Software | =8.2.5.41 | |
Cisco Adaptive Security Appliance Software | =8.2.5.46 | |
Cisco Adaptive Security Appliance Software | =8.2.5.48 | |
Cisco Adaptive Security Appliance Software | =8.2.5.50 | |
Cisco Adaptive Security Appliance Software | =8.2.5.52 | |
Cisco Adaptive Security Appliance Software | =8.2.5.55 | |
Cisco Adaptive Security Appliance Software | =8.2.5.57 | |
Cisco Adaptive Security Appliance Software | =8.3.1 | |
Cisco Adaptive Security Appliance Software | =8.3.1.1 | |
Cisco Adaptive Security Appliance Software | =8.3.1.4 | |
Cisco Adaptive Security Appliance Software | =8.3.1.6 | |
Cisco Adaptive Security Appliance Software | =8.3.2 | |
Cisco Adaptive Security Appliance Software | =8.3.2.4 | |
Cisco Adaptive Security Appliance Software | =8.3.2.13 | |
Cisco Adaptive Security Appliance Software | =8.3.2.23 | |
Cisco Adaptive Security Appliance Software | =8.3.2.25 | |
Cisco Adaptive Security Appliance Software | =8.3.2.31 | |
Cisco Adaptive Security Appliance Software | =8.3.2.33 | |
Cisco Adaptive Security Appliance Software | =8.3.2.34 | |
Cisco Adaptive Security Appliance Software | =8.3.2.37 | |
Cisco Adaptive Security Appliance Software | =8.3.2.39 | |
Cisco Adaptive Security Appliance Software | =8.3.2.40 | |
Cisco Adaptive Security Appliance Software | =8.3.2.41 | |
Cisco Adaptive Security Appliance Software | =8.3.2.44 | |
Cisco Adaptive Security Appliance Software | =8.4.1 | |
Cisco Adaptive Security Appliance Software | =8.4.1.3 | |
Cisco Adaptive Security Appliance Software | =8.4.1.11 | |
Cisco Adaptive Security Appliance Software | =8.4.2 | |
Cisco Adaptive Security Appliance Software | =8.4.2.1 | |
Cisco Adaptive Security Appliance Software | =8.4.2.8 | |
Cisco Adaptive Security Appliance Software | =8.4.3 | |
Cisco Adaptive Security Appliance Software | =8.4.3.8 | |
Cisco Adaptive Security Appliance Software | =8.4.3.9 | |
Cisco Adaptive Security Appliance Software | =8.4.4 | |
Cisco Adaptive Security Appliance Software | =8.4.4.1 | |
Cisco Adaptive Security Appliance Software | =8.4.4.3 | |
Cisco Adaptive Security Appliance Software | =8.4.4.5 | |
Cisco Adaptive Security Appliance Software | =8.4.4.9 | |
Cisco Adaptive Security Appliance Software | =8.4.5 | |
Cisco Adaptive Security Appliance Software | =8.4.5.6 | |
Cisco Adaptive Security Appliance Software | =8.4.6 | |
Cisco Adaptive Security Appliance Software | =8.4.7 | |
Cisco Adaptive Security Appliance Software | =8.4.7.3 | |
Cisco Adaptive Security Appliance Software | =8.4.7.15 | |
Cisco Adaptive Security Appliance Software | =8.4.7.22 | |
Cisco Adaptive Security Appliance Software | =8.4.7.23 | |
Cisco Adaptive Security Appliance Software | =8.4.7.26 | |
Cisco Adaptive Security Appliance Software | =8.4.7.28 | |
Cisco Adaptive Security Appliance Software | =8.5.1 | |
Cisco Adaptive Security Appliance Software | =8.5.1.1 | |
Cisco Adaptive Security Appliance Software | =8.5.1.6 | |
Cisco Adaptive Security Appliance Software | =8.5.1.7 | |
Cisco Adaptive Security Appliance Software | =8.5.1.14 | |
Cisco Adaptive Security Appliance Software | =8.5.1.17 | |
Cisco Adaptive Security Appliance Software | =8.5.1.18 | |
Cisco Adaptive Security Appliance Software | =8.5.1.19 | |
Cisco Adaptive Security Appliance Software | =8.5.1.21 | |
Cisco Adaptive Security Appliance Software | =8.5.1.24 | |
Cisco Adaptive Security Appliance Software | =8.6.1 | |
Cisco Adaptive Security Appliance Software | =8.6.1.1 | |
Cisco Adaptive Security Appliance Software | =8.6.1.2 | |
Cisco Adaptive Security Appliance Software | =8.6.1.5 | |
Cisco Adaptive Security Appliance Software | =8.6.1.10 | |
Cisco Adaptive Security Appliance Software | =8.6.1.12 | |
Cisco Adaptive Security Appliance Software | =8.6.1.13 | |
Cisco Adaptive Security Appliance Software | =8.6.1.14 | |
Cisco Adaptive Security Appliance Software | =8.6.1.17 | |
Cisco Adaptive Security Appliance Software | =8.7.1 | |
Cisco Adaptive Security Appliance Software | =8.7.1.1 | |
Cisco Adaptive Security Appliance Software | =8.7.1.3 | |
Cisco Adaptive Security Appliance Software | =8.7.1.4 | |
Cisco Adaptive Security Appliance Software | =8.7.1.7 | |
Cisco Adaptive Security Appliance Software | =8.7.1.8 | |
Cisco Adaptive Security Appliance Software | =8.7.1.11 | |
Cisco Adaptive Security Appliance Software | =8.7.1.13 | |
Cisco Adaptive Security Appliance Software | =8.7.1.16 | |
Cisco Adaptive Security Appliance Software | =9.0.1 | |
Cisco Adaptive Security Appliance Software | =9.0.2 | |
Cisco Adaptive Security Appliance Software | =9.0.2.10 | |
Cisco Adaptive Security Appliance Software | =9.0.3 | |
Cisco Adaptive Security Appliance Software | =9.0.3.6 | |
Cisco Adaptive Security Appliance Software | =9.0.3.8 | |
Cisco Adaptive Security Appliance Software | =9.0.4 | |
Cisco Adaptive Security Appliance Software | =9.0.4.1 | |
Cisco Adaptive Security Appliance Software | =9.0.4.5 | |
Cisco Adaptive Security Appliance Software | =9.0.4.7 | |
Cisco Adaptive Security Appliance Software | =9.0.4.17 | |
Cisco Adaptive Security Appliance Software | =9.0.4.20 | |
Cisco Adaptive Security Appliance Software | =9.0.4.24 | |
Cisco Adaptive Security Appliance Software | =9.0.4.26 | |
Cisco Adaptive Security Appliance Software | =9.0.4.29 | |
Cisco Adaptive Security Appliance Software | =9.0.4.33 | |
Cisco Adaptive Security Appliance Software | =9.0.4.35 | |
Cisco Adaptive Security Appliance Software | =9.1.1 | |
Cisco Adaptive Security Appliance Software | =9.1.1.4 | |
Cisco Adaptive Security Appliance Software | =9.1.2 | |
Cisco Adaptive Security Appliance Software | =9.1.2.8 | |
Cisco Adaptive Security Appliance Software | =9.1.3 | |
Cisco Adaptive Security Appliance Software | =9.1.3.2 | |
Cisco Adaptive Security Appliance Software | =9.1.4 | |
Cisco Adaptive Security Appliance Software | =9.1.4.5 | |
Cisco Adaptive Security Appliance Software | =9.1.5 | |
Cisco Adaptive Security Appliance Software | =9.1.5.10 | |
Cisco Adaptive Security Appliance Software | =9.1.5.12 | |
Cisco Adaptive Security Appliance Software | =9.1.5.15 | |
Cisco Adaptive Security Appliance Software | =9.1.5.21 | |
Cisco Adaptive Security Appliance Software | =9.1.6 | |
Cisco Adaptive Security Appliance Software | =9.1.6.1 | |
Cisco Adaptive Security Appliance Software | =9.1.6.4 | |
Cisco Adaptive Security Appliance Software | =9.1.6.6 | |
Cisco Adaptive Security Appliance Software | =9.2.1 | |
Cisco Adaptive Security Appliance Software | =9.2.2 | |
Cisco Adaptive Security Appliance Software | =9.2.2.4 | |
Cisco Adaptive Security Appliance Software | =9.2.2.7 | |
Cisco Adaptive Security Appliance Software | =9.2.2.8 | |
Cisco Adaptive Security Appliance Software | =9.2.3 | |
Cisco Adaptive Security Appliance Software | =9.2.3.3 | |
Cisco Adaptive Security Appliance Software | =9.2.3.4 | |
Cisco Adaptive Security Appliance Software | =9.3.1 | |
Cisco Adaptive Security Appliance Software | =9.3.1.1 | |
Cisco Adaptive Security Appliance Software | =9.3.2 | |
Cisco Adaptive Security Appliance Software | =9.3.2.2 | |
Cisco Adaptive Security Appliance Software | =7.2.1 | |
Cisco Adaptive Security Appliance Software | =7.2.1.9 | |
Cisco Adaptive Security Appliance Software | =7.2.1.13 | |
Cisco Adaptive Security Appliance Software | =7.2.1.19 | |
Cisco Adaptive Security Appliance Software | =7.2.1.24 | |
Cisco Adaptive Security Appliance Software | =7.2.2 | |
Cisco Adaptive Security Appliance Software | =7.2.2.6 | |
Cisco Adaptive Security Appliance Software | =7.2.2.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-6327 is rated as high severity due to its potential to allow remote attackers to trigger a denial-of-service condition.
To fix CVE-2015-6327, upgrade your Cisco Adaptive Security Appliance to the latest fixed version as recommended by Cisco.
CVE-2015-6327 affects Cisco ASA software versions 7.2 and 8.2 before 8.2(5.58), and various versions from 8.3 to 9.3 prior to their fixed releases.
Currently, there are no specific workarounds provided for CVE-2015-6327; upgrading to a patched version is the best course of action.
CVE-2015-6327 can allow remote attackers to manipulate IKEv1 packets, potentially causing denial-of-service disruptions.