Security Alert: Cisco ASA SNMP Remote Code Execution Vulnerability (CVE-2016-6366)


Hello,

Very recently, a new security vulnerability affecting Cisco ASA & Firepower was discovered. Below are the short details:


Background:
A vulnerability in the Simple Network Management Protocol (SNMP) code of Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker to cause a reload of the affected system or to remotely execute code. The vulnerability is due to a buffer overflow in the affected code area. An exploit could allow the attacker to execute arbitrary code and obtain full control of the system or to cause a reload of the affected system. The attacker must know the SNMP community string to exploit this vulnerability.




Affected Products:
  • Cisco ASA 5500 Series Adaptive Security Appliances
  • Cisco ASA 5500-X Series Next-Generation Firewalls
  • Cisco ASA Services Module for Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers
  • Cisco ASA 1000V Cloud Firewall
  • Cisco Adaptive Security Virtual Appliance (ASAv)
  • Cisco Firepower 4100 Series
  • Cisco Firepower 9300 ASA Security Module
  • Cisco Firepower Threat Defense Software
  • Cisco Firewall Services Module (FWSM)*
  • Cisco Industrial Security Appliance 3000 
  • Cisco PIX Firewalls


IOS Fix:

Cisco ASA Major Release First Fixed Release
 7.2Affected; migrate to 9.1.7(9) or later
 8.0Affected; migrate to 9.1.7(9) or later
8.1Affected; migrate to 9.1.7(9) or later
8.2Affected; migrate to 9.1.7(9) or later
8.3Affected; migrate to 9.1.7(9) or later
8.4Affected; migrate to 9.1.7(9) or later
8.5Affected; migrate to 9.1.7(9) or later
8.6Affected; migrate to 9.1.7(9) or later
8.7Affected; migrate to 9.1.7(9) or later
9.09.0.4(40) ETA 8/25/2016
9.19.1.7(9)
9.29.2.4(14) ETA 8/25/2016
9.39.3.3(10) ETA 8/26/2016
9.49.4.3(8) ETA 8/26/2016
9.59.5(3)
9.69.6.1(11) / FTD 6.0.1(2)


For up-to-date details of the vulnerability, kindly check the following link:
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160817-asa-snmp

For more information or assistance in patching the above vulnerability, don't hesitate to contact us through our call center on +961-1-511822.


--
Elie Bassil
linkedin.com/in/eliebassil

68 comments:

  1. very useful information provided in this blog. concepts were explained in a detailed manner. Keep giving these types of informations
    SEO training in Chennai

    ReplyDelete
  2. nice to read,more techniques of snmp are helps to know abou the overall concepts of snmp.It express the new way of protocol networks which have an alerts of these security services to execute the code.


    Car Spa at Doorstep in Mumbai

    ReplyDelete
  3. Users can also view app-usage reports, have a peek at this here to find more!

    ReplyDelete
  4. Superb. I really enjoyed very much with this article here. Really it is an amazing article I had ever read. I hope it will help a lot for all. Thank you so much for this amazing posts and please keep update like this excellent article.thank you for sharing such a great blog with us. expecting for your.
    Digital Marketing Company in India

    ReplyDelete
  5. http://barcelonavrealmadrid.co/

    http://barcelonavrealmadrid.co/

    http://barcelonavrealmadrid.co/

    http://barcelonavrealmadrid.co/

    ReplyDelete
  6. Thank you for sharing such a nice and interesting blog with us. Hope it might be much useful for us. keep on updating...!!
    seo company in india
    digital marketing company in india

    ReplyDelete
  7. Superb. I really enjoyed very much with this article here. Really it is an amazing article I had ever read. I hope it will help a lot for all. Thank you so much for this amazing posts and please keep update like this excellent article.thank you for sharing such a great blog with us. expecting for your.
    Digital Marketing Company in India

    ReplyDelete
  8. Being new to the blogging world I feel like there is still so much to learn. Your tips helped to clarify a few things for me as well as giving..

    Best Laser Clinic In Chennai

    Best Implant Clinic In Chennai

    ReplyDelete
  9. I simply want to tell you that I’m all new to blogs and truly liked you’re blog site. Very likely I’m likely to bookmark your site .You surely come with remarkable articles. Cheers for sharing your website page.

    Hadoop Training in Chennai

    Base SAS Training in Chennai

    ReplyDelete
  10. https://the-masters.org/

    https://2017masters.co/

    https://mastersgolf.co/

    https://2017masters.org/

    https://themasters2017.info/

    ReplyDelete