CVE-2015-6325
published 2015-10-25CVE-2015-6325: Cisco Adaptive Security Appliance (ASA) software 7.2 and 8.2 before 8.2(5.58), 8.3 and 8.4 before 8.4(7.29), 8.5 through 8.7 before 8.7(1.17), 9.0 before…
PriorityP432high7.1CVSS 2.0
AVNACMAuNCNINAC
EPSS
2.77%
84.7th percentile
Cisco Adaptive Security Appliance (ASA) software 7.2 and 8.2 before 8.2(5.58), 8.3 and 8.4 before 8.4(7.29), 8.5 through 8.7 before 8.7(1.17), 9.0 before 9.0(4.37), 9.1 before 9.1(6.4), 9.2 before 9.2(4), 9.3 before 9.3(3.1), and 9.4 before 9.4(1.1) allows remote attackers to cause a denial of service (device reload) via a crafted DNS response, aka Bug ID CSCut03495.
Affected
176 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
CVSS provenance
nvdv2.07.1HIGHAV:N/AC:M/Au:N/C:N/I:N/A:C
vendor_cisco7.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-qfrp-89jw-777c: Cisco Adaptive Security Appliance (ASA) software 7
ghsa_unreviewed·2022-05-17
CVE-2015-6325 [HIGH] GHSA-qfrp-89jw-777c: Cisco Adaptive Security Appliance (ASA) software 7
Cisco Adaptive Security Appliance (ASA) software 7.2 and 8.2 before 8.2(5.58), 8.3 and 8.4 before 8.4(7.29), 8.5 through 8.7 before 8.7(1.17), 9.0 before 9.0(4.37), 9.1 before 9.1(6.4), 9.2 before 9.2(4), 9.3 before 9.3(3.1), and 9.4 before 9.4(1.1) allows remote attackers to cause a denial of service (device reload) via a crafted DNS response, aka Bug ID CSCut03495.
Cisco
Cisco ASA Software DNS Denial of Service Vulnerability
vendor_cisco·2015-10-21·CVSS 7.1
CVE-2015-6325 [HIGH] CWE-399 Cisco ASA Software DNS Denial of Service Vulnerability
Cisco ASA Software DNS Denial of Service Vulnerability
A vulnerability in the DNS code of Cisco Adaptive Security Appliance (ASA) Software could allow an
unauthenticated, remote attacker to cause an affected system to reload.
The vulnerability is due
to improper processing of DNS packets. An attacker could exploit this vulnerability by
sending a request to an affected Cisco ASA appliance to cause it to
generate a DNS request packet. The attacker would need to spoof the reply packet with a crafted DNS response.
Note: Only traffic directed to the affected device can be used to exploit this vulnerability. This vulnerability affects Cisco ASA Software configured in routed or transparent firewall mode and single or multiple context mode. This vulnerability can be triggered by IPv4 and IPv6 t
Cisco
Cisco ASA Software DNS Denial of Service Vulnerability
vendor_cisco
CVE-2015-6325 Cisco ASA Software DNS Denial of Service Vulnerability
CVE-2015-6325: Cisco ASA Software DNS Denial of Service Vulnerability
A vulnerability in the DNS code of Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to cause an affected system to reload. The vulnerability is due to improper processing of DNS packets. An attacker could exploit this vulnerability by sending a request to an affected Cisco ASA appliance to cause it to generate a DNS request packet. The attacker would need to spoof the reply packet with a crafted DNS response. Note: Only traffic directed to the affected device can be used to exploit this vulnerability. This vulnerability affects Cisco ASA Software configured in routed or transparent firewall mode and single or multiple context mode. This vulnerability can be triggered by IPv
No detection rules found.
No public exploits indexed.
arXiv
Software-Defined Adversarial Trajectory Sampling
arxiv_fulltext·2017-04-30
Software-Defined Adversarial Trajectory Sampling
Software-Defined Adversarial\ Sampling
Kashyap Thimmaraju^1 Liron Schiff^2 Stefan Schmid^1,3
^1 TU Berlin, Germany
^2 GuardiCore Labs, Israel
^3 Aalborg University, Denmark
## Abstract
Today's routing protocols critically rely on the assumption
that the underlying hardware is trusted.
Given the increasing number of attacks on
network devices, and recent reports on hardware
backdoors this
assumption has become questionable.
Indeed, with the critical role computer networks play today,
the contrast between our security assumptions and reality is problematic.
This paper presents Software-Defined Adversarial Trajectory Sampling ( ),
an OpenFlow-based mechanism to efficiently
monitor packet trajectories, also
in the presence of non-cooperating or even adversarial
switches or routers, e.g.,
Bugzilla
CVE-2015-0223 qpid-cpp: anonymous access to qpidd cannot be prevented
bugzilla·2015-01-27·CVSS 5.0
CVE-2015-0223 [MEDIUM] CVE-2015-0223 qpid-cpp: anonymous access to qpidd cannot be prevented
CVE-2015-0223 qpid-cpp: anonymous access to qpidd cannot be prevented
It was reported [1] that an attacker can gain access to qpidd as an anonymous user, even if the ANONYMOUS mechanism is disallowed.
A patch is available (https://issues.apache.org/jira/browse/QPID-6325)
that addresses this vulnerability. The fix will be included in
subsequent releases, but can be applied to 0.30 if desired.
[1]: http://seclists.org/bugtraq/2015/Jan/122
Discussion:
Created qpid-cpp tracking bugs for this issue:
Affects: fedora-all [bug 1186310]
Affects: epel-7 [bug 1186311]
---
Upstream commits:
https://svn.apache.org/viewvc?view=revision&revision=1653216
https://svn.apache.org/viewvc?view=revision&revision=1653547
---
This issue has been addressed in the following products:
MRG for RHEL-5 v. 2
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151021-asa-dns1http://www.securityfocus.com/bid/77260http://www.securitytracker.com/id/1033913http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151021-asa-dns1http://www.securityfocus.com/bid/77260http://www.securitytracker.com/id/1033913
2015-10-25
Published