Race condition in the SSL implementation on Cisco Intrusion Prevention System (IPS) devices allows remote attackers to cause a denial of service by making many management-interface HTTPS connections during the key-regeneration phase of an upgrade, aka Bug ID CSCui25688.
References
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 02:23
Type | Values Removed | Values Added |
---|---|---|
References | () http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2015-0631 - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/72700 - | |
References | () http://www.securitytracker.com/id/1031780 - |
Information
Published : 2015-02-21 11:59
Updated : 2024-11-21 02:23
NVD link : CVE-2015-0631
Mitre link : CVE-2015-0631
CVE.ORG link : CVE-2015-0631
JSON object : View
Products Affected
cisco
- ids_4250
- ids_4215
- ips_4255
- ids_4235
- ids_4220
- ids_4250_xl
- ips_4240
- ips_sensor_software
- ids_4230
- ids_4210
- ips_4270
- ips_4260
CWE
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')