CVE-2013-5512

EUVD-2013-5352
Race condition in the HTTP Deep Packet Inspection (DPI) feature in Cisco Adaptive Security Appliance (ASA) Software 8.2.x before 8.2(5.46), 8.3.x before 8.3(2.39), 8.4.x before 8.4(5.5), 8.5.x before 8.5(1.18), 8.6.x before 8.6(1.12), 8.7.x before 8.7(1.4), 9.0.x before 9.0(1.4), and 9.1.x before 9.1(1.2), in certain conditions involving the spoof-server option or ActiveX or Java response inspection, allows remote attackers to cause a denial of service (device reload) via a crafted HTTP response, aka Bug ID CSCud37992.
Race Condition
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.1 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 29%
Affected Products (NVD)
VendorProductVersion
ciscoadaptive_security_appliance_software
8.2
ciscoadaptive_security_appliance_software
8.2\(1\)
ciscoadaptive_security_appliance_software
8.2\(2\)
ciscoadaptive_security_appliance_software
8.2\(3\)
ciscoadaptive_security_appliance_software
8.2\(3.9\)
ciscoadaptive_security_appliance_software
8.2\(4\)
ciscoadaptive_security_appliance_software
8.2\(4.1\)
ciscoadaptive_security_appliance_software
8.2\(4.4\)
ciscoadaptive_security_appliance_software
8.2\(5\)
ciscoadaptive_security_appliance_software
8.2\(5.35\)
ciscoadaptive_security_appliance_software
8.2\(5.38\)
ciscoadaptive_security_appliance_software
8.3\(1\)
ciscoadaptive_security_appliance_software
8.3\(2\)
ciscoadaptive_security_appliance_software
8.3\(2.34\)
ciscoadaptive_security_appliance_software
8.3\(2.37\)
ciscoadaptive_security_appliance_software
8.4
ciscoadaptive_security_appliance_software
8.4\(1\)
ciscoadaptive_security_appliance_software
8.4\(1.11\)
ciscoadaptive_security_appliance_software
8.4\(2\)
ciscoadaptive_security_appliance_software
8.4\(2.11\)
ciscoadaptive_security_appliance_software
8.4\(3\)
ciscoadaptive_security_appliance_software
8.4\(4.11\)
ciscoadaptive_security_appliance_software
8.4\(5\)
ciscoadaptive_security_appliance_software
8.5
ciscoadaptive_security_appliance_software
8.5\(1\)
ciscoadaptive_security_appliance_software
8.5\(1.17\)
ciscoadaptive_security_appliance_software
8.6
ciscoadaptive_security_appliance_software
8.6\(1\)
ciscoadaptive_security_appliance_software
8.6\(1.3\)
ciscoadaptive_security_appliance_software
8.6\(1.10\)
ciscoadaptive_security_appliance_software
8.7\(1.3\)
ciscoadaptive_security_appliance_software
9.0
ciscoadaptive_security_appliance_software
9.1
𝑥
= Vulnerable software versions