|
|||
Rule General Information |
---|
Release Date: | 2016-08-26 | |
Rule Name: | Cisco Adaptive Security Appliance SNMP Buffer Overflow Vulnerability (CVE-2016-6366) | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | Buffer overflow in Cisco Adaptive Security Appliance (ASA) Software through 9.4.2.3 on ASA 5500, ASA 5500-X, ASA Services Module, ASA 1000V, ASAv, Firepower 9300 ASA Security Module, PIX, and FWSM devices allows remote authenticated users to execute arbitrary code via crafted IPv4 SNMP packets. | |
Impact: | A buffer overflow vulnerability can be triggered by an attacker in the context of the vulnerable product. Further attacks include arbitrary code execution and denial of service. | |
Affected OS: | Others, Other Unix, FreeBSD, Linux | |
Reference: | SecurityFocusBID:92521 SecurityTrackerID:1036637 ExploitDB:40258 |
|
Solutions |
---|
The vendors have released upgrade patches to fix vulnerabilities, please visit: http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160817-asa-snmp |