Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2014-3391


Untrusted search path vulnerability in Cisco ASA Software 8.x before 8.4(3), 8.5, and 8.7 before 8.7(1.13) allows local users to gain privileges by placing a Trojan horse library file in external memory, leading to library use after device reload because of an incorrect LD_LIBRARY_PATH value, aka Bug ID CSCtq52661.


Published

2014-10-10T10:55:06.557

Last Modified

2025-04-12T10:46:40.837

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 6.8 (MEDIUM)

CVSSv2 Vector

AV:L/AC:L/Au:S/C:C/I:C/A:C

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: SINGLE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

3.1

Impact Score

10.0

Weaknesses
  • Type: Primary
    CWE-20

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application cisco adaptive_security_appliance_software 8.7.8 Yes
Operating System cisco adaptive_security_appliance_software 8.2.0.45 Yes
Operating System cisco adaptive_security_appliance_software 8.2.1 Yes
Operating System cisco adaptive_security_appliance_software 8.2.1.1 Yes
Operating System cisco adaptive_security_appliance_software 8.2.2 Yes
Operating System cisco adaptive_security_appliance_software 8.2.2.10 Yes
Operating System cisco adaptive_security_appliance_software 8.2.2.12 Yes
Operating System cisco adaptive_security_appliance_software 8.2.2.16 Yes
Operating System cisco adaptive_security_appliance_software 8.2.2.17 Yes
Operating System cisco adaptive_security_appliance_software 8.2.3 Yes
Operating System cisco adaptive_security_appliance_software 8.2.4 Yes
Operating System cisco adaptive_security_appliance_software 8.2.4.1 Yes
Operating System cisco adaptive_security_appliance_software 8.2.4.4 Yes
Operating System cisco adaptive_security_appliance_software 8.2.5 Yes
Operating System cisco adaptive_security_appliance_software 8.2.5.13 Yes
Operating System cisco adaptive_security_appliance_software 8.2.5.22 Yes
Operating System cisco adaptive_security_appliance_software 8.2.5.26 Yes
Operating System cisco adaptive_security_appliance_software 8.2.5.33 Yes
Operating System cisco adaptive_security_appliance_software 8.2.5.40 Yes
Operating System cisco adaptive_security_appliance_software 8.2.5.41 Yes
Operating System cisco adaptive_security_appliance_software 8.2.5.46 Yes
Operating System cisco adaptive_security_appliance_software 8.2.5.48 Yes
Operating System cisco adaptive_security_appliance_software 8.2.5.50 Yes
Operating System cisco adaptive_security_appliance_software 8.3.1 Yes
Operating System cisco adaptive_security_appliance_software 8.3.1.1 Yes
Operating System cisco adaptive_security_appliance_software 8.3.1.4 Yes
Operating System cisco adaptive_security_appliance_software 8.3.1.6 Yes
Operating System cisco adaptive_security_appliance_software 8.3.2 Yes
Operating System cisco adaptive_security_appliance_software 8.3.2.4 Yes
Operating System cisco adaptive_security_appliance_software 8.3.2.13 Yes
Operating System cisco adaptive_security_appliance_software 8.3.2.23 Yes
Operating System cisco adaptive_security_appliance_software 8.3.2.25 Yes
Operating System cisco adaptive_security_appliance_software 8.3.2.31 Yes
Operating System cisco adaptive_security_appliance_software 8.3.2.33 Yes
Operating System cisco adaptive_security_appliance_software 8.3.2.34 Yes
Operating System cisco adaptive_security_appliance_software 8.3.2.37 Yes
Operating System cisco adaptive_security_appliance_software 8.3.2.39 Yes
Operating System cisco adaptive_security_appliance_software 8.3.2.40 Yes
Operating System cisco adaptive_security_appliance_software 8.3.2.41 Yes
Operating System cisco adaptive_security_appliance_software 8.4.1 Yes
Operating System cisco adaptive_security_appliance_software 8.4.1.3 Yes
Operating System cisco adaptive_security_appliance_software 8.4.1.11 Yes
Operating System cisco adaptive_security_appliance_software 8.4.2 Yes
Operating System cisco adaptive_security_appliance_software 8.4.2.1 Yes
Operating System cisco adaptive_security_appliance_software 8.4.2.8 Yes
Operating System cisco adaptive_security_appliance_software 8.4.3 Yes
Operating System cisco adaptive_security_appliance_software 8.4.3.8 Yes
Operating System cisco adaptive_security_appliance_software 8.4.3.9 Yes
Operating System cisco adaptive_security_appliance_software 8.4.4 Yes
Operating System cisco adaptive_security_appliance_software 8.4.4.1 Yes
Operating System cisco adaptive_security_appliance_software 8.4.4.3 Yes
Operating System cisco adaptive_security_appliance_software 8.4.4.5 Yes
Operating System cisco adaptive_security_appliance_software 8.4.4.9 Yes
Operating System cisco adaptive_security_appliance_software 8.4.5 Yes
Operating System cisco adaptive_security_appliance_software 8.4.5.6 Yes
Operating System cisco adaptive_security_appliance_software 8.4.6 Yes
Operating System cisco adaptive_security_appliance_software 8.4.7 Yes
Operating System cisco adaptive_security_appliance_software 8.4.7.3 Yes
Operating System cisco adaptive_security_appliance_software 8.4.7.15 Yes
Operating System cisco adaptive_security_appliance_software 8.4.7.22 Yes
Operating System cisco adaptive_security_appliance_software 8.7.1 Yes
Operating System cisco adaptive_security_appliance_software 8.7.1.3 Yes
Operating System cisco adaptive_security_appliance_software 8.7.1.4 Yes
Operating System cisco adaptive_security_appliance_software 8.7.1.7 Yes
Operating System cisco adaptive_security_appliance_software 8.7.1.11 Yes
Operating System cisco adaptive_security_appliance_software 8.7.1.13 Yes

References