This vulnerability occurs when the webvpn feature is enabled on an affected cisco asa device and an attempt to double free a region of memory occurs.
Cisco adaptive security appliance remote code execution and denial of service vulnerability.
2018 may 17 17 52 gmt.
A vulnerability has been identified in the secure sockets layer ssl vpn functionality of the cisco adaptive security appliance asa software which could allow for remote code execution.
Known affected releases.
Cisco adaptive security appliance remote code execution and denial of service vulnerability.
Cisco has released software updates that address.
A vulnerability in the command line interface cli parser of cisco adaptive security appliance asa software could allow an authenticated local attacker to create a denial of service dos condition or potentially execute arbitrary code.
An attacker could exploit this vulnerability by invoking certain invalid commands in an affected device.
2018 january 29 17 00 gmt.
9 2 4 9 6 2 9 8 1 description partial.
A vulnerability in the web interface of the cisco adaptive security appliance asa could allow an unauthenticated remote attacker to cause an affected device to reload unexpectedly resulting in a denial of service dos condition.
No workarounds available.