7.8

CVE-2014-3386

The GPRS Tunneling Protocol (GTP) inspection engine in Cisco ASA Software 8.2 before 8.2(5.51), 8.4 before 8.4(7.15), 8.7 before 8.7(1.13), 9.0 before 9.0(4.8), and 9.1 before 9.1(5.1) allows remote attackers to cause a denial of service (device reload) via a crafted series of GTP packets, aka Bug ID CSCum56399.

Data is provided by the National Vulnerability Database (NVD)
CiscoAsa Version8.2.5
CiscoAsa Version8.2.5.13
CiscoAsa Version8.2.5.22
CiscoAsa Version8.2.5.26
CiscoAsa Version8.2.5.33
CiscoAsa Version8.2.5.41
CiscoAsa Version8.2.5.46
CiscoAsa Version8.2.5.48
CiscoAsa Version8.2.5.49
CiscoAsa Version8.4
CiscoAsa Version8.4.1
CiscoAsa Version8.4.2
CiscoAsa Version8.4.3
CiscoAsa Version8.4.4
CiscoAsa Version8.4.5
CiscoAsa Version8.4.6
CiscoAsa Version8.4.7
CiscoAsa Version8.7
CiscoAsa Version9.0
CiscoAsa Version9.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.43% 0.594
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.8 10 6.9
AV:N/AC:L/Au:N/C:N/I:N/A:C