CVE-2007-0961
published 2007-02-16CVE-2007-0961: Cisco PIX 500 and ASA 5500 Series Security Appliances 6.x before 6.3(5.115), 7.0 before 7.0(5.2), and 7.1 before 7.1(2.5), and the FWSM 3.x before 3.1(3.24)…
PriorityP431high7.8CVSS 2.0
AVNACLAuNCNINAC
EPSS
3.24%
86.9th percentile
Cisco PIX 500 and ASA 5500 Series Security Appliances 6.x before 6.3(5.115), 7.0 before 7.0(5.2), and 7.1 before 7.1(2.5), and the FWSM 3.x before 3.1(3.24), when the "inspect sip" option is enabled, allows remote attackers to cause a denial of service (device reboot) via malformed SIP packets.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | asa_5500 | — | — |
| cisco | asa_5500 | — | — |
| cisco | asa_5500 | — | — |
| cisco | asa_5500 | — | — |
| cisco | pix_firewall_software | — | — |
| cisco | pix_firewall_software | — | — |
| cisco | pix_firewall_software | — | — |
| cisco | pix_firewall_software | — | — |
CVSS provenance
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
vendor_cisco7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Firewall Services Module, PIX and ASA SIP Message Denial of Service Vulnerability
vendor_cisco·2007-02-14·CVSS 7.8
CVE-2007-0961 [HIGH] CWE-399 Cisco Firewall Services Module, PIX and ASA SIP Message Denial of Service Vulnerability
Cisco Firewall Services Module, PIX and ASA SIP Message Denial of Service Vulnerability
Cisco Firewall Services Module, PIX Security Appliance, and ASA Security Appliance contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition.
The vulnerability exists due to an error when handling SIP messages. An unauthenticated, remote attacker could exploit this vulnerability by sending a malformed SIP message to an affected device. This action could cause the affected device to reload, resulting in a temporary DoS condition. Repeated attacks can result in a persistent DoS condition.
Cisco has confirmed this vulnerability with a security advisory and released updated software.
Successful exploitation allows the attacker to cause the a
GHSA
GHSA-qp89-w7pq-p5cc: Cisco PIX 500 and ASA 5500 Series Security Appliances 6
ghsa_unreviewed·2022-05-01
CVE-2007-0961 [HIGH] GHSA-qp89-w7pq-p5cc: Cisco PIX 500 and ASA 5500 Series Security Appliances 6
Cisco PIX 500 and ASA 5500 Series Security Appliances 6.x before 6.3(5.115), 7.0 before 7.0(5.2), and 7.1 before 7.1(2.5), and the FWSM 3.x before 3.1(3.24), when the "inspect sip" option is enabled, allows remote attackers to cause a denial of service (device reboot) via malformed SIP packets.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://osvdb.org/33054http://secunia.com/advisories/24160http://secunia.com/advisories/24179http://secunia.com/advisories/24180http://securitytracker.com/id?1017651http://www.cisco.com/en/US/products/products_security_advisory09186a00807e2481.shtmlhttp://www.cisco.com/en/US/products/products_security_advisory09186a00807e2484.shtmlhttp://www.kb.cert.org/vuls/id/430969http://www.securityfocus.com/bid/22561http://www.securityfocus.com/bid/22562http://www.securitytracker.com/id?1017652http://www.vupen.com/english/advisories/2007/0608https://exchange.xforce.ibmcloud.com/vulnerabilities/32487https://exchange.xforce.ibmcloud.com/vulnerabilities/32501http://osvdb.org/33054http://secunia.com/advisories/24160http://secunia.com/advisories/24179http://secunia.com/advisories/24180http://securitytracker.com/id?1017651http://www.cisco.com/en/US/products/products_security_advisory09186a00807e2481.shtmlhttp://www.cisco.com/en/US/products/products_security_advisory09186a00807e2484.shtmlhttp://www.kb.cert.org/vuls/id/430969http://www.securityfocus.com/bid/22561http://www.securityfocus.com/bid/22562http://www.securitytracker.com/id?1017652http://www.vupen.com/english/advisories/2007/0608https://exchange.xforce.ibmcloud.com/vulnerabilities/32487https://exchange.xforce.ibmcloud.com/vulnerabilities/32501
2007-02-16
Published