CVE-2013-5567

MEDIUM

Description

Cisco Adaptive Security Appliance (ASA) Software 8.4(.6) and earlier, when using an unsupported configuration with overlapping criteria for filtering and inspection, allows remote attackers to cause a denial of service (traffic loop and device crash) via a packet that triggers multiple matches, aka Bug ID CSCui45606.

References

http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-5567

http://tools.cisco.com/security/center/viewAlert.x?alertId=34911

http://www.securityfocus.com/bid/68504

http://www.securitytracker.com/id/1030555

https://exchange.xforce.ibmcloud.com/vulnerabilities/94445

Details

Source: MITRE

Published: 2014-07-14

Updated: 2020-01-21

Type: CWE-399

Risk Information

CVSS v2.0

Base Score: 5.4

Vector: AV:N/AC:H/Au:N/C:N/I:N/A:C

Impact Score: 6.9

Exploitability Score: 4.9

Severity: MEDIUM