Vulnerability Name: | CVE-2005-3788 (CCN-23160) | ||||||||
Assigned: | 2005-11-13 | ||||||||
Published: | 2005-11-13 | ||||||||
Updated: | 2018-10-30 | ||||||||
Summary: | Race condition in Cisco Adaptive Security Appliance (ASA) 7.0(0), 7.0(2), and 7.0(4), when running with an Active/Standby configuration and when the failover LAN interface fails, allows remote attackers to cause a denial of service (standby firewall failure) by sending spoofed ARP responses from an IP address of an active firewall, which prevents the standby firewall from becoming active, aka "failover denial of service." | ||||||||
CVSS v3 Severity: | 5.9 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H)
| ||||||||
CVSS v2 Severity: | 5.4 Medium (CVSS v2 Vector: AV:N/AC:H/Au:N/C:N/I:N/A:C) 4.0 Medium (Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C)
4.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: CCN Type: BugTraq Mailing List, Sun Nov 13 2005 - 23:19:07 CST CISCO ASA Failover DoS Vulnerability Source: MITRE Type: CNA CVE-2005-3788 Source: BUGTRAQ Type: UNKNOWN 20051114 [ADVISORY] CISCO ASA Failover DoS Vulnerability Source: BUGTRAQ Type: UNKNOWN 20051114 RE: [ADVISORY] CISCO ASA Failover DoS Vulnerability Source: CCN Type: SA17550 Cisco ASA Failover Denial of Service Weakness Source: SECUNIA Type: Vendor Advisory 17550 Source: SREASON Type: UNKNOWN 178 Source: CCN Type: SECTRACK ID: 1015205 Cisco Adaptive Security Appliance Failover Bug Lets Remote Users Deny Service in Certain Conditions Source: SECTRACK Type: Vendor Advisory 1015205 Source: CCN Type: Cisco Adaptive Security Appliance Web site Cisco ASA 5500 Series Adaptive Security Appliances - Products & Services - Cisco Systems Source: CCN Type: OSVDB ID: 20843 Cisco ASA Spoofed Packet Failover DoS Source: BID Type: UNKNOWN 15407 Source: CCN Type: BID-15407 Cisco Adaptive Security Applicance Failover Testing Denial of Service Weakness Source: XF Type: UNKNOWN cisco-asa-failover-dos(23160) Source: XF Type: UNKNOWN cisco-asa-failover-dos(23160) | ||||||||
Vulnerable Configuration: | Configuration 1:![]() | ||||||||
BACK |