CVE-2013-1243

CWE-119Buffer Overflow4 documents4 sources
Severity
7.8HIGH
EPSS
0.4%
top 37.67%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 18
Latest updateMay 17

Description

The IP stack in Cisco Intrusion Prevention System (IPS) Software in ASA 5500-X IPS-SSP software and hardware modules before 7.1(5)E4, IPS 4500 sensors before 7.1(6)E4, and IPS 4300 sensors before 7.1(5)E4 allows remote attackers to cause a denial of service (MainApp process hang) via malformed IPv4 packets, aka Bug ID CSCtx18596.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

🔴Vulnerability Details

2
GHSA
GHSA-q93j-v62p-25v5: The IP stack in Cisco Intrusion Prevention System (IPS) Software in ASA 5500-X IPS-SSP software and hardware modules before 72022-05-17
CVEList
CVE-2013-1243: The IP stack in Cisco Intrusion Prevention System (IPS) Software in ASA 5500-X IPS-SSP software and hardware modules before 72013-07-18

📋Vendor Advisories

1
Cisco
Multiple Vulnerabilities in Cisco Intrusion Prevention System Software2013-07-17
CVE-2013-1243 (HIGH CVSS 7.8) | The IP stack in Cisco Intrusion Pre | cvebase.io