Vulnslist

find the latest Cisco vulnerabilities

Cisco ASA-CX TCP Traffic Denial of Service Vulnerability

Cisco-SA-20130617-CVE-2013-1203 · Medium · Published · Updated

A vulnerability processing TCP traffic on Cisco ASA CX could allow an unauthenticated, remote attacker to cause a reload of the affected device. The vulnerability is due to invalid parsing of TCP packet data forwarded to Cisco ASA CX by the Cisco ASA. An attacker could exploit this vulnerability by sending specific TCP traffic to the Cisco ASA CX to be processed. Cisco has confirmed the vulnerability in a security notice and has released software updates. To exploit this vulnerability, an attacker may require access to trusted, internal networks to send crafted requests to the affected software. This access requirement could limit the likelihood of a successful exploit.

Workarounds

Administrators are advised to apply the appropriate updates.

Administrators are advised to allow only trusted users to have network access.

It is critical to prevent unauthorized direct communication to network devices. Restrict network traffic destined for the network infrastructure to protect against reconnaissance and DoS attacks. For configuration details, see Protecting Your Core: Infrastructure Protection Access Control Listshttp://www.cisco.com/en/US/tech/tk648/tk361/technologies_white_paper09186a00801a1a55.shtml .

Understanding activity on the network provides information and visibility that can identify potential security incidents. Organizations should log events from devices and review the logged data to provide insight into anomalies or malicious activity. For logging best practices, see Cisco Guide to Harden Cisco IOS Deviceshttp://www.cisco.com/en/US/tech/tk648/tk361/technologies_tech_note09186a0080120f48.shtml#logbest .

Administrators are advised to monitor network traffic for security-related network activity. Cisco NetFlow identifies security-related network activity. For more information about Cisco NetFlow, see Introduction to Cisco IOS NetFlow - A Technical Overviewhttp://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6555/ps6601/prod_white_paper0900aecd80406232.html .

Administrators are advised to monitor affected systems.

CVEsCVE-2013-1203
Cisco Bug IDsCSCue88386
CVSS ScoreBase 5.4
Base 5.4 AV:N/AC:H/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C
Product Names From Source
Cisco ASA CX Context-Aware Security Software

Related Products

Product CVE Evidence
Cisco ASA CX Context-Aware Security Software CVE-2013-1203 Cisco OpenVuln
Cisco Adaptive Security Appliance (ASA) Software CVE-2013-1203 Cisco OpenVuln