CVE-2013-5567
published 2014-07-14CVE-2013-5567: Cisco Adaptive Security Appliance (ASA) Software 8.4(.6) and earlier, when using an unsupported configuration with overlapping criteria for filtering and…
PriorityP428medium5.4CVSS 2.0
AVNACHAuNCNINAC
EPSS
2.12%
79.9th percentile
Cisco Adaptive Security Appliance (ASA) Software 8.4(.6) and earlier, when using an unsupported configuration with overlapping criteria for filtering and inspection, allows remote attackers to cause a denial of service (traffic loop and device crash) via a packet that triggers multiple matches, aka Bug ID CSCui45606.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | adaptive_security_appliance_software | <= 8.4\(6\) | — |
CVSS provenance
nvdv2.05.4MEDIUMAV:N/AC:H/Au:N/C:N/I:N/A:C
vendor_cisco5.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-rmx6-5p52-gpq2: Cisco Adaptive Security Appliance (ASA) Software 8
ghsa_unreviewed·2022-05-13
CVE-2013-5567 [MEDIUM] CWE-400 GHSA-rmx6-5p52-gpq2: Cisco Adaptive Security Appliance (ASA) Software 8
Cisco Adaptive Security Appliance (ASA) Software 8.4(.6) and earlier, when using an unsupported configuration with overlapping criteria for filtering and inspection, allows remote attackers to cause a denial of service (traffic loop and device crash) via a packet that triggers multiple matches, aka Bug ID CSCui45606.
Cisco
Cisco Adaptive Security Appliance Software Filter and Inspect Overlap Denial of Service Vulnerability
vendor_cisco·2014-07-11·CVSS 5.4
CVE-2013-5567 [MEDIUM] CWE-399 Cisco Adaptive Security Appliance Software Filter and Inspect Overlap Denial of Service Vulnerability
Cisco Adaptive Security Appliance Software Filter and Inspect Overlap Denial of Service Vulnerability
A vulnerability in the inspection and filter features of the Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to cause the affected system to reload.
The vulnerability is due to an internal traffic loop condition that can be triggered when a received packet is matched for both filtering and inspection due to a configuration with overlapping traffic matching criteria (configuration is not supported). An attacker could exploit this vulnerability by sending a packet that would be matched by the incorrect configuration. An exploit could allow the attacker to trigger an affected system to crash, resulting in a denial of service (DoS) condition.
Cisco ha
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-5567http://tools.cisco.com/security/center/viewAlert.x?alertId=34911http://www.securityfocus.com/bid/68504http://www.securitytracker.com/id/1030555https://exchange.xforce.ibmcloud.com/vulnerabilities/94445http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-5567http://tools.cisco.com/security/center/viewAlert.x?alertId=34911http://www.securityfocus.com/bid/68504http://www.securitytracker.com/id/1030555https://exchange.xforce.ibmcloud.com/vulnerabilities/94445
2014-07-14
Published