Cisco ASA 5500 Series SIP Traffic (CVE-2010-0150) Denial of Service Vulnerability
BID:38277
Info
Cisco ASA 5500 Series SIP Traffic (CVE-2010-0150) Denial of Service Vulnerability
| Bugtraq ID: | 38277 |
| Class: | Design Error |
| CVE: |
CVE-2010-0150 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 17 2010 12:00AM |
| Updated: | Feb 17 2010 12:00AM |
| Credit: | Cisco |
| Vulnerable: |
Cisco ASA 5500 Series Adaptive Security Appliance 7.0.4 .3 Cisco ASA 5500 Series Adaptive Security Appliance 7.0.4 Cisco ASA 5500 Series Adaptive Security Appliance 7.0 Cisco ASA 5500 Series Adaptive Security Appliance 8.2(1.15) Cisco ASA 5500 Series Adaptive Security Appliance 8.2(1.10) Cisco ASA 5500 Series Adaptive Security Appliance 8.2 Cisco ASA 5500 Series Adaptive Security Appliance 8.1(2.35) Cisco ASA 5500 Series Adaptive Security Appliance 8.1(2.29) Cisco ASA 5500 Series Adaptive Security Appliance 8.1 Cisco ASA 5500 Series Adaptive Security Appliance 8.0(5.1) Cisco ASA 5500 Series Adaptive Security Appliance 8.0(4.44) Cisco ASA 5500 Series Adaptive Security Appliance 8.0(4.38) Cisco ASA 5500 Series Adaptive Security Appliance 8.0 Cisco ASA 5500 Series Adaptive Security Appliance 7.2 Cisco ASA 5500 Series Adaptive Security Appliance 7.0 |
| Not Vulnerable: |
Cisco ASA 5500 Series Adaptive Security Appliance 8.2(1.16) Cisco ASA 5500 Series Adaptive Security Appliance 8.1(2.37) Cisco ASA 5500 Series Adaptive Security Appliance 8.0(5.2) Cisco ASA 5500 Series Adaptive Security Appliance 7.2(4.45) Cisco ASA 5500 Series Adaptive Security Appliance 7.0(8.10) |
Discussion
Cisco ASA 5500 Series SIP Traffic (CVE-2010-0150) Denial of Service Vulnerability
Cisco ASA 5500 series security appliances are prone to a denial-of-service vulnerability. This issue is tracked by Cisco Bug ID CSCsy91157.
An attacker can exploit this issue to cause the vulnerable device to crash, denying service to legitimate users.
Cisco ASA 5500 series security appliances are prone to a denial-of-service vulnerability. This issue is tracked by Cisco Bug ID CSCsy91157.
An attacker can exploit this issue to cause the vulnerable device to crash, denying service to legitimate users.
Exploit / POC
Cisco ASA 5500 Series SIP Traffic (CVE-2010-0150) Denial of Service Vulnerability
Attackers can exploit this issue using readily available networking tools.
Attackers can exploit this issue using readily available networking tools.
Solution / Fix
Cisco ASA 5500 Series SIP Traffic (CVE-2010-0150) Denial of Service Vulnerability
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.
References
Cisco ASA 5500 Series SIP Traffic (CVE-2010-0150) Denial of Service Vulnerability
References:
References: