CVE-2013-3463
Severity CVSS v4.0:
Pending analysis
Type:
CWE-264
Permissions, Privileges, and Access Control
Publication date:
30/08/2013
Last modified:
11/04/2025
Description
The protocol-inspection feature on Cisco Adaptive Security Appliances (ASA) devices does not properly implement the idle timeout, which allows remote attackers to cause a denial of service (connection-table exhaustion) via crafted requests that use an inspected protocol, aka Bug ID CSCuh13899.
Impact
Base Score 2.0
4.30
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:cisco:adaptive_security_appliance_software:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:cisco:adaptive_security_appliance:*:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-3463
- http://tools.cisco.com/security/center/viewAlert.x?alertId=30607
- http://www.securityfocus.com/bid/62068
- http://www.securitytracker.com/id/1028968
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-3463
- http://tools.cisco.com/security/center/viewAlert.x?alertId=30607
- http://www.securityfocus.com/bid/62068
- http://www.securitytracker.com/id/1028968