First published: Thu Feb 11 2016(Updated: )
Buffer overflow in the IKEv1 and IKEv2 implementations in Cisco ASA Software before 8.4(7.30), 8.7 before 8.7(1.18), 9.0 before 9.0(4.38), 9.1 before 9.1(7), 9.2 before 9.2(4.5), 9.3 before 9.3(3.7), 9.4 before 9.4(2.4), and 9.5 before 9.5(2.2) on ASA 5500 devices, ASA 5500-X devices, ASA Services Module for Cisco Catalyst 6500 and Cisco 7600 devices, ASA 1000V devices, Adaptive Security Virtual Appliance (aka ASAv), Firepower 9300 ASA Security Module, and ISA 3000 devices allows remote attackers to execute arbitrary code or cause a denial of service (device reload) via crafted UDP packets, aka Bug IDs CSCux29978 and CSCux42019.
Credit: ykramarz@cisco.com ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Adaptive Security Appliance | =7.2.1 | |
Cisco Adaptive Security Appliance | =7.2.1.9 | |
Cisco Adaptive Security Appliance | =7.2.1.13 | |
Cisco Adaptive Security Appliance | =7.2.1.19 | |
Cisco Adaptive Security Appliance | =7.2.1.24 | |
Cisco Adaptive Security Appliance | =7.2.2 | |
Cisco Adaptive Security Appliance | =7.2.2.6 | |
Cisco Adaptive Security Appliance | =7.2.2.10 | |
Cisco Adaptive Security Appliance Software | =7.2.2.14 | |
Cisco Adaptive Security Appliance Software | =7.2.2.18 | |
Cisco Adaptive Security Appliance Software | =7.2.2.19 | |
Cisco Adaptive Security Appliance Software | =7.2.2.22 | |
Cisco Adaptive Security Appliance Software | =7.2.2.34 | |
Cisco Adaptive Security Appliance Software | =7.2.3 | |
Cisco Adaptive Security Appliance Software | =7.2.3.1 | |
Cisco Adaptive Security Appliance Software | =7.2.3.12 | |
Cisco Adaptive Security Appliance Software | =7.2.3.16 | |
Cisco Adaptive Security Appliance Software | =7.2.4 | |
Cisco Adaptive Security Appliance Software | =7.2.4.6 | |
Cisco Adaptive Security Appliance Software | =7.2.4.9 | |
Cisco Adaptive Security Appliance Software | =7.2.4.18 | |
Cisco Adaptive Security Appliance Software | =7.2.4.25 | |
Cisco Adaptive Security Appliance Software | =7.2.4.27 | |
Cisco Adaptive Security Appliance Software | =7.2.4.30 | |
Cisco Adaptive Security Appliance Software | =7.2.4.33 | |
Cisco Adaptive Security Appliance Software | =7.2.5 | |
Cisco Adaptive Security Appliance Software | =7.2.5.2 | |
Cisco Adaptive Security Appliance Software | =7.2.5.4 | |
Cisco Adaptive Security Appliance Software | =7.2.5.7 | |
Cisco Adaptive Security Appliance Software | =7.2.5.8 | |
Cisco Adaptive Security Appliance Software | =7.2.5.10 | |
Cisco Adaptive Security Appliance Software | =7.2.5.12 | |
Cisco Adaptive Security Appliance Software | =7.2.5.16 | |
Cisco Adaptive Security Appliance Software | =8.2.0.45 | |
Cisco Adaptive Security Appliance Software | =8.2.1 | |
Cisco Adaptive Security Appliance Software | =8.2.1.11 | |
Cisco Adaptive Security Appliance Software | =8.2.2 | |
Cisco Adaptive Security Appliance Software | =8.2.2.9 | |
Cisco Adaptive Security Appliance Software | =8.2.2.10 | |
Cisco Adaptive Security Appliance Software | =8.2.2.12 | |
Cisco Adaptive Security Appliance Software | =8.2.2.16 | |
Cisco Adaptive Security Appliance Software | =8.2.2.17 | |
Cisco Adaptive Security Appliance Software | =8.2.3 | |
Cisco Adaptive Security Appliance Software | =8.2.4 | |
Cisco Adaptive Security Appliance Software | =8.2.4.1 | |
Cisco Adaptive Security Appliance Software | =8.2.4.4 | |
Cisco Adaptive Security Appliance Software | =8.2.5 | |
Cisco Adaptive Security Appliance Software | =8.2.5.13 | |
Cisco Adaptive Security Appliance Software | =8.2.5.22 | |
Cisco Adaptive Security Appliance Software | =8.2.5.26 | |
Cisco Adaptive Security Appliance Software | =8.2.5.33 | |
Cisco Adaptive Security Appliance Software | =8.2.5.40 | |
Cisco Adaptive Security Appliance Software | =8.2.5.41 | |
Cisco Adaptive Security Appliance Software | =8.2.5.46 | |
Cisco Adaptive Security Appliance Software | =8.2.5.48 | |
Cisco Adaptive Security Appliance Software | =8.2.5.50 | |
Cisco Adaptive Security Appliance Software | =8.2.5.52 | |
Cisco Adaptive Security Appliance Software | =8.2.5.55 | |
Cisco Adaptive Security Appliance Software | =8.2.5.57 | |
Cisco Adaptive Security Appliance Software | =8.3.1 | |
Cisco Adaptive Security Appliance Software | =8.3.1.1 | |
Cisco Adaptive Security Appliance Software | =8.3.1.4 | |
Cisco Adaptive Security Appliance Software | =8.3.1.6 | |
Cisco Adaptive Security Appliance Software | =8.3.2 | |
Cisco Adaptive Security Appliance Software | =8.3.2.4 | |
Cisco Adaptive Security Appliance Software | =8.3.2.13 | |
Cisco Adaptive Security Appliance Software | =8.3.2.23 | |
Cisco Adaptive Security Appliance Software | =8.3.2.25 | |
Cisco Adaptive Security Appliance Software | =8.3.2.31 | |
Cisco Adaptive Security Appliance Software | =8.3.2.33 | |
Cisco Adaptive Security Appliance Software | =8.3.2.34 | |
Cisco Adaptive Security Appliance Software | =8.3.2.37 | |
Cisco Adaptive Security Appliance Software | =8.3.2.39 | |
Cisco Adaptive Security Appliance Software | =8.3.2.40 | |
Cisco Adaptive Security Appliance Software | =8.3.2.41 | |
Cisco Adaptive Security Appliance Software | =8.3.2.44 | |
Cisco Adaptive Security Appliance Software | =8.4.0 | |
Cisco Adaptive Security Appliance Software | =8.4.1 | |
Cisco Adaptive Security Appliance Software | =8.4.1.3 | |
Cisco Adaptive Security Appliance Software | =8.4.1.11 | |
Cisco Adaptive Security Appliance Software | =8.4.2 | |
Cisco Adaptive Security Appliance Software | =8.4.2.1 | |
Cisco Adaptive Security Appliance Software | =8.4.2.8 | |
Cisco Adaptive Security Appliance Software | =8.4.3 | |
Cisco Adaptive Security Appliance Software | =8.4.3.8 | |
Cisco Adaptive Security Appliance Software | =8.4.3.9 | |
Cisco Adaptive Security Appliance Software | =8.4.4 | |
Cisco Adaptive Security Appliance Software | =8.4.4.1 | |
Cisco Adaptive Security Appliance Software | =8.4.4.3 | |
Cisco Adaptive Security Appliance Software | =8.4.4.5 | |
Cisco Adaptive Security Appliance Software | =8.4.4.9 | |
Cisco Adaptive Security Appliance Software | =8.4.5 | |
Cisco Adaptive Security Appliance Software | =8.4.5.6 | |
Cisco Adaptive Security Appliance Software | =8.4.6 | |
Cisco Adaptive Security Appliance Software | =8.4.7 | |
Cisco Adaptive Security Appliance Software | =8.4.7.3 | |
Cisco Adaptive Security Appliance Software | =8.4.7.15 | |
Cisco Adaptive Security Appliance Software | =8.4.7.22 | |
Cisco Adaptive Security Appliance Software | =8.4.7.23 | |
Cisco Adaptive Security Appliance Software | =8.4.7.26 | |
Cisco Adaptive Security Appliance Software | =8.4.7.28 | |
Cisco Adaptive Security Appliance Software | =8.4.7.29 | |
Cisco Adaptive Security Appliance Software | =8.5.1 | |
Cisco Adaptive Security Appliance Software | =8.5.1.1 | |
Cisco Adaptive Security Appliance Software | =8.5.1.6 | |
Cisco Adaptive Security Appliance Software | =8.5.1.7 | |
Cisco Adaptive Security Appliance Software | =8.5.1.14 | |
Cisco Adaptive Security Appliance Software | =8.5.1.17 | |
Cisco Adaptive Security Appliance Software | =8.5.1.18 | |
Cisco Adaptive Security Appliance Software | =8.5.1.19 | |
Cisco Adaptive Security Appliance Software | =8.5.1.21 | |
Cisco Adaptive Security Appliance Software | =8.5.1.24 | |
Cisco Adaptive Security Appliance Software | =8.6.1 | |
Cisco Adaptive Security Appliance Software | =8.6.1.1 | |
Cisco Adaptive Security Appliance Software | =8.6.1.2 | |
Cisco Adaptive Security Appliance Software | =8.6.1.5 | |
Cisco Adaptive Security Appliance Software | =8.6.1.10 | |
Cisco Adaptive Security Appliance Software | =8.6.1.12 | |
Cisco Adaptive Security Appliance Software | =8.6.1.13 | |
Cisco Adaptive Security Appliance Software | =8.6.1.14 | |
Cisco Adaptive Security Appliance Software | =8.6.1.17 | |
Cisco Adaptive Security Appliance Software | =8.7.1 | |
Cisco Adaptive Security Appliance Software | =8.7.1.1 | |
Cisco Adaptive Security Appliance Software | =8.7.1.3 | |
Cisco Adaptive Security Appliance Software | =8.7.1.4 | |
Cisco Adaptive Security Appliance Software | =8.7.1.7 | |
Cisco Adaptive Security Appliance Software | =8.7.1.8 | |
Cisco Adaptive Security Appliance Software | =8.7.1.11 | |
Cisco Adaptive Security Appliance Software | =8.7.1.13 | |
Cisco Adaptive Security Appliance Software | =8.7.1.16 | |
Cisco Adaptive Security Appliance Software | =8.7.1.17 | |
Cisco Adaptive Security Appliance Software | =9.0.1 | |
Cisco Adaptive Security Appliance Software | =9.0.2 | |
Cisco Adaptive Security Appliance Software | =9.0.2.10 | |
Cisco Adaptive Security Appliance Software | =9.0.3 | |
Cisco Adaptive Security Appliance Software | =9.0.3.6 | |
Cisco Adaptive Security Appliance Software | =9.0.3.8 | |
Cisco Adaptive Security Appliance Software | =9.0.4 | |
Cisco Adaptive Security Appliance Software | =9.0.4.1 | |
Cisco Adaptive Security Appliance Software | =9.0.4.5 | |
Cisco Adaptive Security Appliance Software | =9.0.4.7 | |
Cisco Adaptive Security Appliance Software | =9.0.4.17 | |
Cisco Adaptive Security Appliance Software | =9.0.4.20 | |
Cisco Adaptive Security Appliance Software | =9.0.4.24 | |
Cisco Adaptive Security Appliance Software | =9.0.4.26 | |
Cisco Adaptive Security Appliance Software | =9.0.4.29 | |
Cisco Adaptive Security Appliance Software | =9.0.4.33 | |
Cisco Adaptive Security Appliance Software | =9.0.4.35 | |
Cisco Adaptive Security Appliance Software | =9.0.4.37 | |
Cisco Adaptive Security Appliance Software | =9.1.1 | |
Cisco Adaptive Security Appliance Software | =9.1.1.4 | |
Cisco Adaptive Security Appliance Software | =9.1.2 | |
Cisco Adaptive Security Appliance Software | =9.1.2.8 | |
Cisco Adaptive Security Appliance Software | =9.1.3 | |
Cisco Adaptive Security Appliance Software | =9.1.3.2 | |
Cisco Adaptive Security Appliance Software | =9.1.4 | |
Cisco Adaptive Security Appliance Software | =9.1.4.5 | |
Cisco Adaptive Security Appliance Software | =9.1.5 | |
Cisco Adaptive Security Appliance Software | =9.1.5.10 | |
Cisco Adaptive Security Appliance Software | =9.1.5.12 | |
Cisco Adaptive Security Appliance Software | =9.1.5.15 | |
Cisco Adaptive Security Appliance Software | =9.1.5.21 | |
Cisco Adaptive Security Appliance Software | =9.1.6 | |
Cisco Adaptive Security Appliance Software | =9.1.6.1 | |
Cisco Adaptive Security Appliance Software | =9.1.6.4 | |
Cisco Adaptive Security Appliance Software | =9.1.6.6 | |
Cisco Adaptive Security Appliance Software | =9.1.6.8 | |
Cisco Adaptive Security Appliance Software | =9.1.6.10 | |
Cisco Adaptive Security Appliance Software | =9.2.1 | |
Cisco Adaptive Security Appliance Software | =9.2.2 | |
Cisco Adaptive Security Appliance Software | =9.2.2.4 | |
Cisco Adaptive Security Appliance Software | =9.2.2.7 | |
Cisco Adaptive Security Appliance Software | =9.2.2.8 | |
Cisco Adaptive Security Appliance Software | =9.2.3 | |
Cisco Adaptive Security Appliance Software | =9.2.3.3 | |
Cisco Adaptive Security Appliance Software | =9.2.3.4 | |
Cisco Adaptive Security Appliance Software | =9.2.4 | |
Cisco Adaptive Security Appliance Software | =9.2.4.2 | |
Cisco Adaptive Security Appliance Software | =9.2.4.4 | |
Cisco Adaptive Security Appliance Software | =9.3.1 | |
Cisco Adaptive Security Appliance Software | =9.3.1.1 | |
Cisco Adaptive Security Appliance Software | =9.3.2 | |
Cisco Adaptive Security Appliance Software | =9.3.2.2 | |
Cisco Adaptive Security Appliance Software | =9.3.3 | |
Cisco Adaptive Security Appliance Software | =9.3.3.1 | |
Cisco Adaptive Security Appliance Software | =9.3.3.2 | |
Cisco Adaptive Security Appliance Software | =9.3.3.5 | |
Cisco Adaptive Security Appliance Software | =9.3.3.6 | |
Cisco Adaptive Security Appliance Software | =9.3.5 | |
Cisco Adaptive Security Appliance Software | =9.4.0.115 | |
Cisco Adaptive Security Appliance Software | =9.4.1 | |
Cisco Adaptive Security Appliance Software | =9.4.1.1 | |
Cisco Adaptive Security Appliance Software | =9.4.1.2 | |
Cisco Adaptive Security Appliance Software | =9.4.1.3 | |
Cisco Adaptive Security Appliance Software | =9.4.1.5 | |
Cisco Adaptive Security Appliance Software | =9.4.2 | |
Cisco Adaptive Security Appliance Software | =9.4.2.3 | |
Cisco Adaptive Security Appliance Software | =9.5.1 | |
Cisco Adaptive Security Appliance Software | =9.5.2 | |
Cisco Adaptive Security Appliance Software | =7.2.1 | |
Cisco Adaptive Security Appliance Software | =7.2.1.9 | |
Cisco Adaptive Security Appliance Software | =7.2.1.13 | |
Cisco Adaptive Security Appliance Software | =7.2.1.19 | |
Cisco Adaptive Security Appliance Software | =7.2.1.24 | |
Cisco Adaptive Security Appliance Software | =7.2.2 | |
Cisco Adaptive Security Appliance Software | =7.2.2.6 | |
Cisco Adaptive Security Appliance Software | =7.2.2.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1287 has been assigned a high severity rating due to its potential impact on system integrity and availability.
To fix CVE-2016-1287, upgrade the Cisco ASA software to a version that addresses this vulnerability, specifically versions 8.4(7.30) or later.
CVE-2016-1287 affects various Cisco ASA devices, including models in the 5500 and 5500-X series running unsupported software versions.
CVE-2016-1287 is classified as a buffer overflow vulnerability in Cisco's IKEv1 and IKEv2 implementations.
Exploiting CVE-2016-1287 could allow attackers to execute arbitrary code or cause a denial of service on the affected Cisco ASA devices.