First published: Tue Jul 12 2016(Updated: )
Cisco Adaptive Security Appliance (ASA) Software 8.2 through 9.4.3.3 allows remote attackers to bypass intended ICMP Echo Reply ACLs via vectors related to subtypes.
Credit: ykramarz@cisco.com ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Adaptive Security Appliance Software | >=8.2<9.4.3.3 | |
Cisco Adaptive Security Appliance Software | >=9.5.0<9.5.2.10 | |
Cisco Adaptive Security Appliance Software | >=9.6.0<9.6.1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1445 is considered a medium severity vulnerability.
To fix CVE-2016-1445, upgrade to a fixed version of Cisco Adaptive Security Appliance Software that addresses the issue.
CVE-2016-1445 allows remote attackers to bypass intended ICMP Echo Reply ACLs.
CVE-2016-1445 affects Cisco ASA Software versions 8.2 through 9.4.3.3 and specific versions up to 9.6.1.5.
There have been indications that exploit attempts for CVE-2016-1445 may be seen in the wild.