Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 146377 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.106766
Kategorie:CISCO
Titel:Cisco ASA Software IPsec Denial of Service Vulnerability (cisco-sa-20170419-asa-ipsec)
Zusammenfassung:A vulnerability in the IPsec code of Cisco ASA Software could; allow an authenticated, remote attacker to cause a reload of the affected system.
Beschreibung:Summary:
A vulnerability in the IPsec code of Cisco ASA Software could
allow an authenticated, remote attacker to cause a reload of the affected system.

Vulnerability Insight:
The vulnerability is due to improper parsing of malformed IPsec
packets. An attacker could exploit this vulnerability by sending malformed IPsec packets to the
affected system.

Only traffic directed to the affected system can be used to exploit this vulnerability. This
vulnerability affects systems configured in routed firewall mode only and in single or multiple
context mode. This vulnerability can be triggered by IPv4 and IPv6 traffic. An attacker needs to
establish a valid IPsec tunnel before exploiting this vulnerability.

Vulnerability Impact:
An authenticated attacker may cause a denial of service condition.

Solution:
See the referenced vendor advisory for a solution.

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:L/Au:S/C:N/I:N/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2017-6609
BugTraq ID: 97936
http://www.securityfocus.com/bid/97936
http://www.securitytracker.com/id/1038316
CopyrightCopyright (C) 2017 Greenbone Networks GmbH

Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.