CVE-2008-2057

Cisco PIX and ASA - Denial of Service via Instant Messenger Inspection Engine

Title source: llm
STIX 2.1

Description

The Instant Messenger (IM) inspection engine in Cisco Adaptive Security Appliance (ASA) and Cisco PIX security appliance 7.2.x before 7.2(4), 8.0.x before 8.0(3)10, and 8.1.x before 8.1(1)2 allows remote attackers to cause a denial of service via a crafted packet.

References (6)

Core 6
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1020180
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1020181
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/30552
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/42837
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/1750/references

Scores

EPSS 0.0290
EPSS Percentile 85.5%

Details

Status published
Products (4)
cisco/adaptive_security_appliance_software 7.2.2
cisco/adaptive_security_appliance_software 8.0
cisco/pix_security_appliance 7.2
cisco/pix_security_appliance 8.0
Published Jun 04, 2008
Tracked Since Feb 18, 2026