HomePentest-Tools.com Logo

Cisco Adaptive Security Appliance Software DHCPv6 Relay Denial of Service Vulnerability (cisco-sa-20160420-asa-dhcpv6) CVE-2016-1367

Severity
CVSSv3 Score
7.5
Vulnerability description

A vulnerability in the DHCPv6 relay feature of Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to cause an affected device to reload.

Risk description

The vulnerability is due to insufficient validation of DHCPv6 packets. An attacker could exploit this vulnerability by sending crafted DHCPv6 packets to an affected device, resulting in a denial of service (DoS) condition. This vulnerability affects systems configured in routed firewall mode and in single or multiple context mode. Cisco ASA Software is affected by this vulnerability only if the software is configured with the DHCPv6 relay feature. The vulnerability is triggered only by IPv6 traffic.

Recommendation

See the referenced vendor advisory for a solution.

Codename
Not available
Detectable with
Network Scanner
Scan engine
OpenVAS
Exploitable with Sniper
No
CVE Published
Apr 21, 2016
Detection added at
Software Type
Not available
Vendor
Not available
Product
Not available