Multiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances

Related Vulnerabilities: CVE-2010-1578   CVE-2010-1579   CVE-2010-1580   CVE-2010-1581   CVE-2010-2814   CVE-2010-2815   CVE-2010-2816   CVE-2010-2817  

Cisco ASA 5500 Series Adaptive Security Appliances are affected by multiple vulnerabilities as follows: Three SunRPC Inspection Denial of Service Vulnerabilities Three Transport Layer Security (TLS) Denial of Service Vulnerabilities Session Initiation Protocol (SIP) Inspection Denial of Service Vulnerability Crafted Internet Key Exchange (IKE) Message Denial of Service Vulnerability These vulnerabilities are not interdependent; a release that is affected by one vulnerability is not necessarily affected by the others. There are workarounds for some of the vulnerabilities disclosed in this advisory. This advisory is posted at http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20100804-asa. Note: The Cisco Firewall Services Module (FWSM) is affected by the SunRPC DoS vulnerabilities. A separate Cisco Security Advisory has been published to disclose the vulnerabilities that affect the FWSM. This advisory is available at http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20100804-fwsm.