Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

Multiple Vulnerabilities in Cisco PIX and Cisco ASA

cisco-sa-20081022-asa · High · Published · Updated

Multiple vulnerabilities exist in the Cisco ASA 5500 Series Adaptive Security Appliances and Cisco PIX Security Appliances. This security advisory outlines details of these vulnerabilities: Windows NT Domain Authentication Bypass Vulnerability IPv6 Denial of Service Vulnerability Crypto Accelerator Memory Leak Vulnerability Note: These vulnerabilities are independent of each other. A device may be affected by one vulnerability and not affected by another. Cisco has released software updates that address these vulnerabilities. Workarounds that mitigate some of these vulnerabilities are available. This advisory is posted at https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20081022-asa.

Cisco advisory · CSAF JSON

Workarounds

No workaround information imported yet.

CVEsCVE-2008-3815, CVE-2008-3816, CVE-2008-3817
Cisco Bug IDsNA
CVSS ScoreBase 4.3
Base 4.3 AV:N/AC:M/Au:N/C:P/I:N/A:N/E:H/RL:OF/RC:C/CDP:N/TD:N/CR:ND/IR:ND/AR:ND
Base 7.8 AV:N/AC:L/Au:N/C:N/I:N/A:C/E:F/RL:OF/RC:C/CDP:N/TD:N/CR:ND/IR:ND/AR:ND
Product Names From Source
Cisco PIX/ASA

Related Products

Product CVE Evidence
Cisco PIX/ASA CVE-2008-3817 Cisco OpenVuln
Cisco PIX/ASA CVE-2008-3816 Cisco OpenVuln
Cisco PIX/ASA CVE-2008-3815 Cisco OpenVuln