A vulnerability in the ingress processing of fragmented TCP packets by Cisco Wide Area Application Services (WAAS) could allow an unauthenticated, remote attacker to cause the WAASNET process to restart unexpectedly, causing a denial of service (DoS) condition. More Information: CSCvc57428. Known Affected Releases: 6.3(1). Known Fixed Releases: 6.3(0.143) 6.2(3c)6 6.2(3.22).
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/99200 | Third Party Advisory VDB Entry |
http://www.securitytracker.com/id/1038747 | Third Party Advisory VDB Entry |
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170621-waas | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2017-07-04 00:29
Updated : 2024-02-04 19:29
NVD link : CVE-2017-6721
Mitre link : CVE-2017-6721
CVE.ORG link : CVE-2017-6721
JSON object : View
Products Affected
cisco
- wide_area_application_services
CWE
CWE-20
Improper Input Validation