QID 317383
Date Published: 2023-11-09
QID 317383: Cisco Adaptive Security Appliance (ASA) Software ICMPv6 Message Processing Denial of Service (DoS) Vulnerability (cisco-sa-asa-icmpv6-t5TzqwNd)
A vulnerability in the Simple Network Management Protocol (SNMP) feature of Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
Affected Products
Cisco Adaptive Security Appliances if they were running a vulnerable release of Cisco ASA Software
9.8.1.0 prior to 9.12.4.56
9.14.1.0 prior to 9.14.4.23
9.15.1.0 prior to 9.16.4.14
9.17.1.0 prior to 9.17.1.30
9.18.1.0 prior to 9.18.3
9.19.1.0 prior to 9.19.1.5
QID Detection Logic (Authenticated):
The check matches Cisco ASA OS version retrieved via Unix Auth using version command and checking for IPv6 addresses via show ipv6 interface brief
A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition
Customers are advised to refer to cisco-sa-asa-icmpv6-t5TzqwNd for more information.
- cisco-sa-asa-icmpv6-t5TzqwNd -
sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asa-icmpv6-t5TzqwNd
CVEs related to QID 317383
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-asa-icmpv6-t5TzqwNd |
|