CVE-2013-5560
published 2013-11-13CVE-2013-5560: The IPv6 implementation in Cisco Adaptive Security Appliance (ASA) Software 9.1.3 and earlier, when NAT64 or NAT66 is enabled, does not properly process NAT…
PriorityP428medium5.4CVSS 2.0
AVNACHAuNCNINAC
EPSS
2.03%
78.9th percentile
The IPv6 implementation in Cisco Adaptive Security Appliance (ASA) Software 9.1.3 and earlier, when NAT64 or NAT66 is enabled, does not properly process NAT rules, which allows remote attackers to cause a denial of service (device reload) via crafted packets, aka Bug ID CSCue34342.
Affected
115 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | adaptive_security_appliance_software | <= 9.1\(3\) | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
CVSS provenance
nvdv2.05.4MEDIUMAV:N/AC:H/Au:N/C:N/I:N/A:C
vendor_cisco5.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Adaptive Security Appliance IPv6 NAT Denial of Service Vulnerability
vendor_cisco·2013-11-11·CVSS 5.4
CVE-2013-5560 [MEDIUM] CWE-399 Cisco Adaptive Security Appliance IPv6 NAT Denial of Service Vulnerability
Cisco Adaptive Security Appliance IPv6 NAT Denial of Service Vulnerability
A vulnerability in the function that performs IP version 6 (IPv6) Network Address Translation (NAT) for Cisco ASA Software could allow an unauthenticated, remote attacker to cause a reload of an affected system.
The vulnerability is due to improper implementation of the logic that performs NAT when the Cisco ASA is configured for NAT64 or NAT66. This vulnerability can be triggered only under specific configurations. An attacker could exploit this vulnerability by sending packets matching one of the NAT rules through the affected system. An exploit could allow the attacker to cause a reload of the system, leading to a denial of service (DoS) condition.
Cisco has confirmed the vulnerability in a security notice and
GHSA
GHSA-6hr2-3hj3-x5gw: The IPv6 implementation in Cisco Adaptive Security Appliance (ASA) Software 9
ghsa_unreviewed·2022-05-17
CVE-2013-5560 [MEDIUM] CWE-20 GHSA-6hr2-3hj3-x5gw: The IPv6 implementation in Cisco Adaptive Security Appliance (ASA) Software 9
The IPv6 implementation in Cisco Adaptive Security Appliance (ASA) Software 9.1.3 and earlier, when NAT64 or NAT66 is enabled, does not properly process NAT rules, which allows remote attackers to cause a denial of service (device reload) via crafted packets, aka Bug ID CSCue34342.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2013-11-13
Published