CVE-2015-0676 : Detail

CVE-2015-0676

A03-Injection
0.08%V3
Network
2015-04-12
23h00 +00:00
2015-04-16
15h57 +00:00
Notifications for a CVE
Stay informed of any changes for a specific CVE.
Notifications manage

CVE Descriptions

The DNS implementation in Cisco Adaptive Security Appliance (ASA) Software 7.2 before 7.2(5.16), 8.2 before 8.2(5.57), 8.3 before 8.3(2.44), 8.4 before 8.4(7.28), 8.5 before 8.5(1.24), 8.6 before 8.6(1.17), 8.7 before 8.7(1.16), 9.0 before 9.0(4.33), 9.1 before 9.1(6.1), 9.2 before 9.2(3.4), and 9.3 before 9.3(3) allows man-in-the-middle attackers to cause a denial of service (memory consumption or device outage) by triggering outbound DNS queries and then sending crafted responses to these queries, aka Bug ID CSCuq77655.

CVE Informations

Related Weaknesses

CWE-ID Weakness Name Source
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

Metrics

Metrics Score Severity CVSS Vector Source
V2 7.1 AV:N/AC:M/Au:N/C:N/I:N/A:C [email protected]

EPSS

EPSS is a scoring model that predicts the likelihood of a vulnerability being exploited.

EPSS Score

The EPSS model produces a probability score between 0 and 1 (0 and 100%). The higher the score, the greater the probability that a vulnerability will be exploited.

EPSS Percentile

The percentile is used to rank CVE according to their EPSS score. For example, a CVE in the 95th percentile according to its EPSS score is more likely to be exploited than 95% of other CVE. Thus, the percentile is used to compare the EPSS score of a CVE with that of other CVE.

Products Mentioned

Configuraton 0

Cisco>>Adaptive_security_appliance_software >> Version 7.0.1

Cisco>>Adaptive_security_appliance_software >> Version 7.0.1.4

Cisco>>Adaptive_security_appliance_software >> Version 7.0.2

Cisco>>Adaptive_security_appliance_software >> Version 7.0.3

Cisco>>Adaptive_security_appliance_software >> Version 7.0.4

Cisco>>Adaptive_security_appliance_software >> Version 7.0.4.2

Cisco>>Adaptive_security_appliance_software >> Version 7.0.5

Cisco>>Adaptive_security_appliance_software >> Version 7.0.5.12

Cisco>>Adaptive_security_appliance_software >> Version 7.0.6

Cisco>>Adaptive_security_appliance_software >> Version 7.0.6.4

Cisco>>Adaptive_security_appliance_software >> Version 7.0.6.8

Cisco>>Adaptive_security_appliance_software >> Version 7.0.6.18

Cisco>>Adaptive_security_appliance_software >> Version 7.0.6.22

Cisco>>Adaptive_security_appliance_software >> Version 7.0.6.26

Cisco>>Adaptive_security_appliance_software >> Version 7.0.6.29

Cisco>>Adaptive_security_appliance_software >> Version 7.0.6.32

Cisco>>Adaptive_security_appliance_software >> Version 7.0.7

Cisco>>Adaptive_security_appliance_software >> Version 7.0.7.1

Cisco>>Adaptive_security_appliance_software >> Version 7.0.7.4

Cisco>>Adaptive_security_appliance_software >> Version 7.0.7.9

Cisco>>Adaptive_security_appliance_software >> Version 7.0.7.12

Cisco>>Adaptive_security_appliance_software >> Version 7.0.8

Cisco>>Adaptive_security_appliance_software >> Version 7.0.8.2

Cisco>>Adaptive_security_appliance_software >> Version 7.0.8.8

Cisco>>Adaptive_security_appliance_software >> Version 7.0.8.12

Cisco>>Adaptive_security_appliance_software >> Version 7.0.8.13

Cisco>>Adaptive_security_appliance_software >> Version 7.1.2

Cisco>>Adaptive_security_appliance_software >> Version 7.1.2.16

Cisco>>Adaptive_security_appliance_software >> Version 7.1.2.20

Cisco>>Adaptive_security_appliance_software >> Version 7.1.2.24

Cisco>>Adaptive_security_appliance_software >> Version 7.1.2.28

Cisco>>Adaptive_security_appliance_software >> Version 7.1.2.38

Cisco>>Adaptive_security_appliance_software >> Version 7.1.2.42

Cisco>>Adaptive_security_appliance_software >> Version 7.1.2.46

Cisco>>Adaptive_security_appliance_software >> Version 7.1.2.49

Cisco>>Adaptive_security_appliance_software >> Version 7.1.2.53

Cisco>>Adaptive_security_appliance_software >> Version 7.1.2.61

Cisco>>Adaptive_security_appliance_software >> Version 7.1.2.64

Cisco>>Adaptive_security_appliance_software >> Version 7.1.2.72

Cisco>>Adaptive_security_appliance_software >> Version 7.1.2.81

Cisco>>Adaptive_security_appliance_software >> Version 7.2.1

Cisco>>Adaptive_security_appliance_software >> Version 7.2.1.9

Cisco>>Adaptive_security_appliance_software >> Version 7.2.1.13

Cisco>>Adaptive_security_appliance_software >> Version 7.2.1.19

Cisco>>Adaptive_security_appliance_software >> Version 7.2.1.24

Cisco>>Adaptive_security_appliance_software >> Version 7.2.2

Cisco>>Adaptive_security_appliance_software >> Version 7.2.2.6

Cisco>>Adaptive_security_appliance_software >> Version 7.2.2.10

Cisco>>Adaptive_security_appliance_software >> Version 7.2.2.14

Cisco>>Adaptive_security_appliance_software >> Version 7.2.2.18

Cisco>>Adaptive_security_appliance_software >> Version 7.2.2.19

Cisco>>Adaptive_security_appliance_software >> Version 7.2.2.22

Cisco>>Adaptive_security_appliance_software >> Version 7.2.2.34

Cisco>>Adaptive_security_appliance_software >> Version 7.2.3

Cisco>>Adaptive_security_appliance_software >> Version 7.2.3.1

Cisco>>Adaptive_security_appliance_software >> Version 7.2.3.12

Cisco>>Adaptive_security_appliance_software >> Version 7.2.3.16

Cisco>>Adaptive_security_appliance_software >> Version 7.2.4

Cisco>>Adaptive_security_appliance_software >> Version 7.2.4.6

Cisco>>Adaptive_security_appliance_software >> Version 7.2.4.9

Cisco>>Adaptive_security_appliance_software >> Version 7.2.4.18

Cisco>>Adaptive_security_appliance_software >> Version 7.2.4.25

Cisco>>Adaptive_security_appliance_software >> Version 7.2.4.27

Cisco>>Adaptive_security_appliance_software >> Version 7.2.4.30

Cisco>>Adaptive_security_appliance_software >> Version 7.2.4.33

Cisco>>Adaptive_security_appliance_software >> Version 7.2.5

Cisco>>Adaptive_security_appliance_software >> Version 7.2.5.2

Cisco>>Adaptive_security_appliance_software >> Version 7.2.5.4

Cisco>>Adaptive_security_appliance_software >> Version 7.2.5.7

Cisco>>Adaptive_security_appliance_software >> Version 7.2.5.8

Cisco>>Adaptive_security_appliance_software >> Version 7.2.5.10

Cisco>>Adaptive_security_appliance_software >> Version 7.2.5.12

Cisco>>Adaptive_security_appliance_software >> Version 8.0.1.2

Cisco>>Adaptive_security_appliance_software >> Version 8.0.2

Cisco>>Adaptive_security_appliance_software >> Version 8.0.2.11

Cisco>>Adaptive_security_appliance_software >> Version 8.0.2.15

Cisco>>Adaptive_security_appliance_software >> Version 8.0.3

Cisco>>Adaptive_security_appliance_software >> Version 8.0.3.6

Cisco>>Adaptive_security_appliance_software >> Version 8.0.3.12

Cisco>>Adaptive_security_appliance_software >> Version 8.0.3.19

Cisco>>Adaptive_security_appliance_software >> Version 8.0.4

Cisco>>Adaptive_security_appliance_software >> Version 8.0.4.3

Cisco>>Adaptive_security_appliance_software >> Version 8.0.4.9

Cisco>>Adaptive_security_appliance_software >> Version 8.0.4.16

Cisco>>Adaptive_security_appliance_software >> Version 8.0.4.23

Cisco>>Adaptive_security_appliance_software >> Version 8.0.4.25

Cisco>>Adaptive_security_appliance_software >> Version 8.0.4.28

Cisco>>Adaptive_security_appliance_software >> Version 8.0.4.31

Cisco>>Adaptive_security_appliance_software >> Version 8.0.4.32

Cisco>>Adaptive_security_appliance_software >> Version 8.0.4.33

Cisco>>Adaptive_security_appliance_software >> Version 8.0.5

Cisco>>Adaptive_security_appliance_software >> Version 8.0.5.20

Cisco>>Adaptive_security_appliance_software >> Version 8.0.5.23

Cisco>>Adaptive_security_appliance_software >> Version 8.0.5.25

Cisco>>Adaptive_security_appliance_software >> Version 8.0.5.27

Cisco>>Adaptive_security_appliance_software >> Version 8.0.5.28

Cisco>>Adaptive_security_appliance_software >> Version 8.0.5.31

Cisco>>Adaptive_security_appliance_software >> Version 8.1.1

Cisco>>Adaptive_security_appliance_software >> Version 8.1.1.6

Cisco>>Adaptive_security_appliance_software >> Version 8.1.2

Cisco>>Adaptive_security_appliance_software >> Version 8.1.2.13

Cisco>>Adaptive_security_appliance_software >> Version 8.1.2.15

Cisco>>Adaptive_security_appliance_software >> Version 8.1.2.16

Cisco>>Adaptive_security_appliance_software >> Version 8.1.2.19

Cisco>>Adaptive_security_appliance_software >> Version 8.1.2.23

Cisco>>Adaptive_security_appliance_software >> Version 8.1.2.24

Cisco>>Adaptive_security_appliance_software >> Version 8.1.2.49

Cisco>>Adaptive_security_appliance_software >> Version 8.1.2.50

Cisco>>Adaptive_security_appliance_software >> Version 8.1.2.55

Cisco>>Adaptive_security_appliance_software >> Version 8.1.2.56

Cisco>>Adaptive_security_appliance_software >> Version 8.2.0.45

Cisco>>Adaptive_security_appliance_software >> Version 8.2.1

Cisco>>Adaptive_security_appliance_software >> Version 8.2.1.11

Cisco>>Adaptive_security_appliance_software >> Version 8.2.2

Cisco>>Adaptive_security_appliance_software >> Version 8.2.2.9

Cisco>>Adaptive_security_appliance_software >> Version 8.2.2.10

Cisco>>Adaptive_security_appliance_software >> Version 8.2.2.12

Cisco>>Adaptive_security_appliance_software >> Version 8.2.2.16

Cisco>>Adaptive_security_appliance_software >> Version 8.2.2.17

Cisco>>Adaptive_security_appliance_software >> Version 8.2.3

Cisco>>Adaptive_security_appliance_software >> Version 8.2.4

Cisco>>Adaptive_security_appliance_software >> Version 8.2.4.1

Cisco>>Adaptive_security_appliance_software >> Version 8.2.4.4

Cisco>>Adaptive_security_appliance_software >> Version 8.2.5

Cisco>>Adaptive_security_appliance_software >> Version 8.2.5.13

Cisco>>Adaptive_security_appliance_software >> Version 8.2.5.22

Cisco>>Adaptive_security_appliance_software >> Version 8.2.5.26

Cisco>>Adaptive_security_appliance_software >> Version 8.2.5.33

Cisco>>Adaptive_security_appliance_software >> Version 8.2.5.40

Cisco>>Adaptive_security_appliance_software >> Version 8.2.5.41

Cisco>>Adaptive_security_appliance_software >> Version 8.2.5.46

Cisco>>Adaptive_security_appliance_software >> Version 8.2.5.48

Cisco>>Adaptive_security_appliance_software >> Version 8.2.5.50

Cisco>>Adaptive_security_appliance_software >> Version 8.2.5.52

Cisco>>Adaptive_security_appliance_software >> Version 8.2.5.55

Cisco>>Adaptive_security_appliance_software >> Version 8.2.5.57

Cisco>>Adaptive_security_appliance_software >> Version 8.3.1

Cisco>>Adaptive_security_appliance_software >> Version 8.3.1.1

Cisco>>Adaptive_security_appliance_software >> Version 8.3.1.4

Cisco>>Adaptive_security_appliance_software >> Version 8.3.1.6

Cisco>>Adaptive_security_appliance_software >> Version 8.3.2

Cisco>>Adaptive_security_appliance_software >> Version 8.3.2.4

Cisco>>Adaptive_security_appliance_software >> Version 8.3.2.13

Cisco>>Adaptive_security_appliance_software >> Version 8.3.2.23

Cisco>>Adaptive_security_appliance_software >> Version 8.3.2.25

Cisco>>Adaptive_security_appliance_software >> Version 8.3.2.31

Cisco>>Adaptive_security_appliance_software >> Version 8.3.2.33

Cisco>>Adaptive_security_appliance_software >> Version 8.3.2.34

Cisco>>Adaptive_security_appliance_software >> Version 8.3.2.37

Cisco>>Adaptive_security_appliance_software >> Version 8.3.2.39

Cisco>>Adaptive_security_appliance_software >> Version 8.3.2.40

Cisco>>Adaptive_security_appliance_software >> Version 8.3.2.41

Cisco>>Adaptive_security_appliance_software >> Version 8.3.2.44

Cisco>>Adaptive_security_appliance_software >> Version 8.4.1

Cisco>>Adaptive_security_appliance_software >> Version 8.4.1.3

Cisco>>Adaptive_security_appliance_software >> Version 8.4.1.11

Cisco>>Adaptive_security_appliance_software >> Version 8.4.2

Cisco>>Adaptive_security_appliance_software >> Version 8.4.2.1

Cisco>>Adaptive_security_appliance_software >> Version 8.4.2.8

Cisco>>Adaptive_security_appliance_software >> Version 8.4.3

Cisco>>Adaptive_security_appliance_software >> Version 8.4.3.8

Cisco>>Adaptive_security_appliance_software >> Version 8.4.3.9

Cisco>>Adaptive_security_appliance_software >> Version 8.4.4

Cisco>>Adaptive_security_appliance_software >> Version 8.4.4.1

Cisco>>Adaptive_security_appliance_software >> Version 8.4.4.3

Cisco>>Adaptive_security_appliance_software >> Version 8.4.4.5

Cisco>>Adaptive_security_appliance_software >> Version 8.4.4.9

Cisco>>Adaptive_security_appliance_software >> Version 8.4.5

Cisco>>Adaptive_security_appliance_software >> Version 8.4.5.6

Cisco>>Adaptive_security_appliance_software >> Version 8.4.6

Cisco>>Adaptive_security_appliance_software >> Version 8.4.7

Cisco>>Adaptive_security_appliance_software >> Version 8.4.7.3

Cisco>>Adaptive_security_appliance_software >> Version 8.4.7.15

Cisco>>Adaptive_security_appliance_software >> Version 8.4.7.22

Cisco>>Adaptive_security_appliance_software >> Version 8.4.7.23

Cisco>>Adaptive_security_appliance_software >> Version 8.4.7.26

Cisco>>Adaptive_security_appliance_software >> Version 8.5.1

Cisco>>Adaptive_security_appliance_software >> Version 8.5.1.1

Cisco>>Adaptive_security_appliance_software >> Version 8.5.1.6

Cisco>>Adaptive_security_appliance_software >> Version 8.5.1.7

Cisco>>Adaptive_security_appliance_software >> Version 8.5.1.14

Cisco>>Adaptive_security_appliance_software >> Version 8.5.1.17

Cisco>>Adaptive_security_appliance_software >> Version 8.5.1.18

Cisco>>Adaptive_security_appliance_software >> Version 8.5.1.19

Cisco>>Adaptive_security_appliance_software >> Version 8.5.1.21

Cisco>>Adaptive_security_appliance_software >> Version 8.6.1

Cisco>>Adaptive_security_appliance_software >> Version 8.6.1.1

Cisco>>Adaptive_security_appliance_software >> Version 8.6.1.2

Cisco>>Adaptive_security_appliance_software >> Version 8.6.1.5

Cisco>>Adaptive_security_appliance_software >> Version 8.6.1.10

Cisco>>Adaptive_security_appliance_software >> Version 8.6.1.12

Cisco>>Adaptive_security_appliance_software >> Version 8.6.1.13

Cisco>>Adaptive_security_appliance_software >> Version 8.6.1.14

Cisco>>Adaptive_security_appliance_software >> Version 8.7.1

Cisco>>Adaptive_security_appliance_software >> Version 8.7.1.1

Cisco>>Adaptive_security_appliance_software >> Version 8.7.1.3

Cisco>>Adaptive_security_appliance_software >> Version 8.7.1.4

Cisco>>Adaptive_security_appliance_software >> Version 8.7.1.7

Cisco>>Adaptive_security_appliance_software >> Version 8.7.1.8

Cisco>>Adaptive_security_appliance_software >> Version 8.7.1.11

Cisco>>Adaptive_security_appliance_software >> Version 8.7.1.13

Cisco>>Adaptive_security_appliance_software >> Version 9.0.1

Cisco>>Adaptive_security_appliance_software >> Version 9.0.2

Cisco>>Adaptive_security_appliance_software >> Version 9.0.2.10

Cisco>>Adaptive_security_appliance_software >> Version 9.0.3

Cisco>>Adaptive_security_appliance_software >> Version 9.0.3.6

Cisco>>Adaptive_security_appliance_software >> Version 9.0.3.8

Cisco>>Adaptive_security_appliance_software >> Version 9.0.4

Cisco>>Adaptive_security_appliance_software >> Version 9.0.4.1

Cisco>>Adaptive_security_appliance_software >> Version 9.0.4.5

Cisco>>Adaptive_security_appliance_software >> Version 9.0.4.7

Cisco>>Adaptive_security_appliance_software >> Version 9.0.4.17

Cisco>>Adaptive_security_appliance_software >> Version 9.0.4.20

Cisco>>Adaptive_security_appliance_software >> Version 9.0.4.24

Cisco>>Adaptive_security_appliance_software >> Version 9.0.4.26

Cisco>>Adaptive_security_appliance_software >> Version 9.0.4.29

Cisco>>Adaptive_security_appliance_software >> Version 9.1.1

Cisco>>Adaptive_security_appliance_software >> Version 9.1.1.4

Cisco>>Adaptive_security_appliance_software >> Version 9.1.2

Cisco>>Adaptive_security_appliance_software >> Version 9.1.2.8

Cisco>>Adaptive_security_appliance_software >> Version 9.1.3

Cisco>>Adaptive_security_appliance_software >> Version 9.1.3.2

Cisco>>Adaptive_security_appliance_software >> Version 9.1.4

Cisco>>Adaptive_security_appliance_software >> Version 9.1.4.5

Cisco>>Adaptive_security_appliance_software >> Version 9.1.5

Cisco>>Adaptive_security_appliance_software >> Version 9.1.5.10

Cisco>>Adaptive_security_appliance_software >> Version 9.1.5.12

Cisco>>Adaptive_security_appliance_software >> Version 9.1.5.15

Cisco>>Adaptive_security_appliance_software >> Version 9.1.5.21

Cisco>>Adaptive_security_appliance_software >> Version 9.1.6

Cisco>>Adaptive_security_appliance_software >> Version 9.2.1

Cisco>>Adaptive_security_appliance_software >> Version 9.2.2

Cisco>>Adaptive_security_appliance_software >> Version 9.2.2.4

Cisco>>Adaptive_security_appliance_software >> Version 9.2.2.7

Cisco>>Adaptive_security_appliance_software >> Version 9.2.2.8

Cisco>>Adaptive_security_appliance_software >> Version 9.2.3

Cisco>>Adaptive_security_appliance_software >> Version 9.2.3.3

Cisco>>Adaptive_security_appliance_software >> Version 9.3.1

Cisco>>Adaptive_security_appliance_software >> Version 9.3.1.1

Cisco>>Adaptive_security_appliance_software >> Version 9.3.2

Cisco>>Adaptive_security_appliance_software >> Version 9.3.2.2

References

http://www.securitytracker.com/id/1032045
Tags : vdb-entry, x_refsource_SECTRACK