CVE-2014-3386

Cisco ASA 8.2-9.1 - Denial of Service via GTP Packet Handling

Title source: llm
STIX 2.1

Description

The GPRS Tunneling Protocol (GTP) inspection engine in Cisco ASA Software 8.2 before 8.2(5.51), 8.4 before 8.4(7.15), 8.7 before 8.7(1.13), 9.0 before 9.0(4.8), and 9.1 before 9.1(5.1) allows remote attackers to cause a denial of service (device reload) via a crafted series of GTP packets, aka Bug ID CSCum56399.

References (1)

Core 1
Core References

Scores

EPSS 0.0189
EPSS Percentile 77.4%

Details

CWE
CWE-399
Status published
Products (20)
cisco/asa 8.2.5
cisco/asa 8.2.5.13
cisco/asa 8.2.5.22
cisco/asa 8.2.5.26
cisco/asa 8.2.5.33
cisco/asa 8.2.5.41
cisco/asa 8.2.5.46
cisco/asa 8.2.5.48
cisco/asa 8.2.5.49
cisco/asa 8.4
... and 10 more
Published Oct 10, 2014
Tracked Since Feb 18, 2026