The WebVPN CIFS implementation in Cisco Adaptive Security Appliance (ASA) Software 9.0(.4.1) and earlier allows remote CIFS servers to cause a denial of service (device reload) via a long share list, aka Bug ID CSCuj83344.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-6691 | Broken Link Vendor Advisory |
http://tools.cisco.com/security/center/viewAlert.x?alertId=34921 | Vendor Advisory |
http://www.securityfocus.com/bid/68517 | Third Party Advisory VDB Entry |
http://www.securitytracker.com/id/1030565 | Broken Link Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/94459 | Third Party Advisory VDB Entry |
Configurations
History
02 Jun 2022, 15:49
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:cisco:adaptive_security_appliance_software:8.4\(3.9\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:9.0\(3.8\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:8.4\(7.3\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:8.4\(2.8\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:9.0\(1\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:8.4\(4.3\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:8.4\(7\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:8.4\(1.3\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:8.4\(4.9\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:8.4\(4.1\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:8.4\(5.6\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:9.0\(3.6\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:8.4\(6\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:8.4\(4\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:9.0\(2.10\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:8.4\(2.1\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:8.4\(3\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:8.4\(4.5\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:8.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:9.0\(4\):*:*:*:*:*:*:* cpe:2.3:a:cisco:adaptive_security_appliance_software:9.0\(3\):*:*:*:*:*:*:* |
|
References | (SECTRACK) http://www.securitytracker.com/id/1030565 - Broken Link, Third Party Advisory, VDB Entry | |
References | (CISCO) http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-6691 - Broken Link, Vendor Advisory | |
References | (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/94459 - Third Party Advisory, VDB Entry |
Information
Published : 2014-07-14 21:55
Updated : 2024-02-04 18:35
NVD link : CVE-2013-6691
Mitre link : CVE-2013-6691
CVE.ORG link : CVE-2013-6691
JSON object : View
Products Affected
cisco
- adaptive_security_appliance_software
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer