CVE-2013-5512
Summary
| CVE | CVE-2013-5512 |
|---|---|
| State | PUBLISHED |
| Assigner | cisco |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2013-10-13 10:20:04 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | Race condition in the HTTP Deep Packet Inspection (DPI) feature in Cisco Adaptive Security Appliance (ASA) Software 8.2.x before 8.2(5.46), 8.3.x before 8.3(2.39), 8.4.x before 8.4(5.5), 8.5.x before 8.5(1.18), 8.6.x before 8.6(1.12), 8.7.x before 8.7(1.4), 9.0.x before 9.0(1.4), and 9.1.x before 9.1(1.2), in certain conditions involving the spoof-server option or ActiveX or Java response inspection, allows remote attackers to cause a denial of service (device reload) via a crafted HTTP response, aka Bug ID CSCud37992. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
MediumAuthentication
NoneConfidentiality
NoneIntegrity
NoneAvailability
CompleteAV:N/AC:M/Au:N/C:N/I:N/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Cisco | Adaptive Security Appliance Software | 8.2 | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.2\(1\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.2\(2\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.2\(3.9\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.2\(3\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.2\(4.1\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.2\(4.4\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.2\(4\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.2\(5.35\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.2\(5.38\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.2\(5\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.3\(1\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.3\(2.34\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.3\(2.37\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.3\(2\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.4 | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.4\(1.11\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.4\(1\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.4\(2.11\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.4\(2\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.4\(3\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.4\(4.11\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.4\(5\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.5 | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.5\(1.17\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.5\(1\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.6 | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.6\(1.10\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.6\(1.3\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.6\(1\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 8.7\(1.3\) | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 9.0 | All | All | All |
| Operating System | Cisco | Adaptive Security Appliance Software | 9.1 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| HTTP Deep Packet Inspection Denial of Service Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | tools.cisco.com | Vendor Advisory |
| Cisco Security Advisory: Multiple Vulnerabilities in Cisco ASA Software | af854a3a-2127-422b-91ae-364da2661108 | tools.cisco.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.