Vulnslist

find the latest Cisco vulnerabilities

Multiple Vulnerabilities in Cisco PIX and ASA Appliance

cisco-sa-20071017-asa · High · Published · Updated

Two crafted packet vulnerabilities exist in the Cisco PIX 500 Series Security Appliance (PIX) and the Cisco 5500 Series Adaptive Security Appliance (ASA) that may result in a reload of the device. These vulnerabilities are triggered during processing of Media Gateway Control Protocol (MGCP) packets, or during processing of Transport Layer Security (TLS) traffic that terminates on the PIX or ASA security appliance. Note: These vulnerabilities are independent of each other; a device may be affected by one and not by the other. This advisory is posted at https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20071017-asa.

Workarounds

No workaround information imported yet.

CVEsCVE-2007-5568, CVE-2007-5569
Cisco Bug IDsNA
CVSS ScoreBase 7.1
Base 7.1 AV:N/AC:M/Au:N/C:N/I:N/A:C/E:F/RL:OF/RC:C/CDP:N/TD:N/CR:ND/IR:ND/AR:ND
Base 7.8 AV:N/AC:L/Au:N/C:N/I:N/A:C/E:F/RL:OF/RC:C/CDP:N/TD:N/CR:ND/IR:ND/AR:ND
Product Names From Source
Cisco Firewall Services Module (FWSM), Cisco PIX/ASA

Related Products

Product CVE Evidence
Cisco PIX/ASA CVE-2007-5569 Cisco OpenVuln
Cisco PIX/ASA CVE-2007-5568 Cisco OpenVuln
Cisco Firewall Services Module (FWSM) CVE-2007-5569 Cisco OpenVuln
Cisco Firewall Services Module (FWSM) CVE-2007-5568 Cisco OpenVuln