CVE-2014-3386
Cisco ASA 8.2-9.1 - Denial of Service via GTP Packet Handling
Title source: llmDescription
The GPRS Tunneling Protocol (GTP) inspection engine in Cisco ASA Software 8.2 before 8.2(5.51), 8.4 before 8.4(7.15), 8.7 before 8.7(1.13), 9.0 before 9.0(4.8), and 9.1 before 9.1(5.1) allows remote attackers to cause a denial of service (device reload) via a crafted series of GTP packets, aka Bug ID CSCum56399.
References (1)
Core 1
Core References
Vendor Advisory vendor-advisory
x_refsource_cisco
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20141008-asa
Scores
EPSS
0.0189
EPSS Percentile
77.4%
Details
CWE
CWE-399
Status
published
Products (20)
cisco/asa
8.2.5
cisco/asa
8.2.5.13
cisco/asa
8.2.5.22
cisco/asa
8.2.5.26
cisco/asa
8.2.5.33
cisco/asa
8.2.5.41
cisco/asa
8.2.5.46
cisco/asa
8.2.5.48
cisco/asa
8.2.5.49
cisco/asa
8.4
... and 10 more
Published
Oct 10, 2014
Tracked Since
Feb 18, 2026