CVE-2010-0149
Summary
| CVE | CVE-2010-0149 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2010-02-19 17:30:00 UTC |
| Updated | 2017-08-17 01:31:00 UTC |
| Description | Unspecified vulnerability in Cisco ASA 5500 Series Adaptive Security Appliance 7.2 before 7.2(4.46), 8.0 before 8.0(4.38), 8.1 before 8.1(2.29), and 8.2 before 8.2(1.5); and Cisco PIX 500 Series Security Appliance; allows remote attackers to cause a denial of service (prevention of new connections) via crafted TCP segments during termination of the TCP connection that cause the connection to remain in CLOSEWAIT status, aka "TCP Connection Exhaustion Denial of Service Vulnerability." |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Cisco | Asa 5500 | 7.1 | All | All | All |
| Hardware | Cisco | Asa 5500 | 7.2 | All | All | All |
| Hardware | Cisco | Asa 5500 | 8.0 | All | All | All |
| Hardware | Cisco | Asa 5500 | 8.1 | All | All | All |
| Hardware | Cisco | Asa 5500 | 8.2 | All | All | All |
| Hardware | Cisco | Asa 5500 | 7.1 | All | All | All |
| Hardware | Cisco | Asa 5500 | 7.2 | All | All | All |
| Hardware | Cisco | Asa 5500 | 8.0 | All | All | All |
| Hardware | Cisco | Asa 5500 | 8.1 | All | All | All |
| Hardware | Cisco | Asa 5500 | 8.2 | All | All | All |
| Hardware | Cisco | Pix 500 | All | All | All | All |
| Hardware | Cisco | Pix 500 | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| 62433 | OSVDB | osvdb.org | |
| Cisco ASA TCP, SIP, SCCP, DTLS, and IKE Processing Flaws Let Remote Users Deny Service - SecurityTracker | SECTRACK | www.securitytracker.com | |
| Cisco ASA Appliance TCP Connection Exhaustion Denial of Service Vulnerability | BID | www.securityfocus.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| Cisco Security Advisory: Multiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances - Cisco Systems | CISCO | www.cisco.com | Vendor Advisory |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | Vendor Advisory |
| Cisco PIX 500 Series Multiple Vulnerabilities - Advisories - Community | SECUNIA | secunia.com | Vendor Advisory |
| Cisco ASA 5500 Series Multiple Vulnerabilities - Advisories - Community | SECUNIA | secunia.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.