CVE-2013-3382
published 2013-06-26CVE-2013-3382: The Next-Generation Firewall (aka NGFW, formerly CX Context-Aware Security) module 9.x before 9.1.1.9 and 9.1.2.x before 9.1.2.12 for Cisco Adaptive Security…
PriorityP337high7.8CVSS 2.0
AVNACLAuNCNINAC
EPSS
1.90%
77.5th percentile
The Next-Generation Firewall (aka NGFW, formerly CX Context-Aware Security) module 9.x before 9.1.1.9 and 9.1.2.x before 9.1.2.12 for Cisco Adaptive Security Appliances (ASA) devices allows remote attackers to cause a denial of service (device reload or traffic-processing outage) via fragmented (1) IPv4 or (2) IPv6 traffic, aka Bug ID CSCue88387.
Affected
22 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance | — | — |
| cisco | asa_next-generation_firewall_fragmented_traffic | — | — |
CVSS provenance
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
vendor_cisco7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco ASA Next-Generation Firewall Fragmented Traffic Denial of Service Vulnerability
vendor_cisco·2013-06-26·CVSS 7.8
CVE-2013-3382 [HIGH] CWE-20 Cisco ASA Next-Generation Firewall Fragmented Traffic Denial of Service Vulnerability
Cisco ASA Next-Generation Firewall Fragmented Traffic Denial of Service Vulnerability
Cisco ASA Next-Generation Firewall (NGFW) Services contains a Fragmented Traffic Denial of Service (DoS) vulnerability.
Successful exploitation of this vulnerability on the Cisco ASA NGFW could cause the device to reload or stop processing user traffic that has been redirected by the parent Cisco ASA to the ASA NGFW module for further inspection.
There are no workarounds for this vulnerability, but mitigations are available.
Cisco has released software updates that address this vulnerability. This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130626-ngfw
Cisco
Cisco ASA Next-Generation Firewall Fragmented Traffic Denial of Service Vulnerability
vendor_cisco
CVE-2013-3382 Cisco ASA Next-Generation Firewall Fragmented Traffic Denial of Service Vulnerability
CVE-2013-3382: Cisco ASA Next-Generation Firewall Fragmented Traffic Denial of Service Vulnerability
Cisco ASA Next-Generation Firewall (NGFW) Services contains a Fragmented Traffic Denial of Service (DoS) vulnerability. Successful exploitation of this vulnerability on the Cisco ASA NGFW could cause the device to reload or stop processing user traffic that has been redirected by the parent Cisco ASA to the ASA NGFW module for further inspection. There are no
CWE: CWE-20, CWE-20
Bug IDs: CSCue88387, CSCue88387
GHSA
GHSA-cmvr-qw2c-gpqq: The Next-Generation Firewall (aka NGFW, formerly CX Context-Aware Security) module 9
ghsa_unreviewed·2022-05-17
CVE-2013-3382 [HIGH] CWE-20 GHSA-cmvr-qw2c-gpqq: The Next-Generation Firewall (aka NGFW, formerly CX Context-Aware Security) module 9
The Next-Generation Firewall (aka NGFW, formerly CX Context-Aware Security) module 9.x before 9.1.1.9 and 9.1.2.x before 9.1.2.12 for Cisco Adaptive Security Appliances (ASA) devices allows remote attackers to cause a denial of service (device reload or traffic-processing outage) via fragmented (1) IPv4 or (2) IPv6 traffic, aka Bug ID CSCue88387.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2013-06-26
Published