Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

Cisco Intrusion Prevention System Key Regeneration HTTPS Denial of Service Vulnerability

Cisco-SA-20150220-CVE-2015-0631 · Medium · Published · Updated

A vulnerability in the SSL/TLS subsystem used by the web management interface of Cisco Intrusion Prevention System (IPS) software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to a potential race condition while regenerating the affected device's cryptographic certificate and keys during an upgrade to image 7.2 or later from an image prior to 7.2. An attacker could exploit this vulnerability by negotiating a number of HTTPS connections with the management interface while key regeneration is in process. A successful exploit could allow the attacker to create a DoS condition. The condition will persist until the device has been restarted. The vulnerability can be triggered only by SSL/TLS traffic directed to the TCP port and IP address of the management interface associated with the web server. The default TCP port is 443. Packets transiting an affected device through the sensing interfaces cannot be used to trigger this vulnerability. Cisco has confirmed the vulnerability in a security notice and released software updates. Cisco indicates through the CVSS score that functional exploit code exists; however, the code is not known to be publicly available.

Cisco advisory · CSAF JSON

Workarounds

Administrators are advised to apply the appropriate updates.

Administrators are advised to allow only trusted users to have network access.

Administrators may consider using IP-based access control lists (ACLs) to allow only trusted systems to access the affected systems.

Administrators can help protect affected systems from external attacks by using a solid firewall strategy.

Administrators are advised to monitor affected systems.

CVEsCVE-2015-0631
Cisco Bug IDsCSCui25688
CVSS ScoreBase 5.4
Base 5.4 AV:N/AC:H/Au:N/C:N/I:N/A:C/E:F/RL:OF/RC:C
Product Names From Source
Cisco Intrusion Prevention System (IPS), Intrusion Prevention System (IPS)

Related Products

Product CVE Evidence
Intrusion Prevention System (IPS) CVE-2015-0631 Cisco OpenVuln
Cisco Intrusion Prevention System (IPS) CVE-2015-0631 Cisco OpenVuln