Race condition in the SSL implementation on Cisco Intrusion Prevention System (IPS) devices allows remote attackers to cause a denial of service by making many management-interface HTTPS connections during the key-regeneration phase of an upgrade, aka Bug ID CSCui25688.
2015-02-21T11:59:04.027
2025-04-12T10:46:40.837
Deferred
CVSSv2: 7.1 (HIGH)
AV:N/AC:M/Au:N/C:N/I:N/A:C
8.6
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | cisco | ips_sensor_software | 7.2\(1\)e4 | Yes |
Application | cisco | ips_sensor_software | 7.2\(2\)e4 | Yes |
Hardware | cisco | ids_4210 | * | No |
Hardware | cisco | ids_4215 | * | No |
Hardware | cisco | ids_4220 | * | No |
Hardware | cisco | ids_4230 | * | No |
Hardware | cisco | ids_4235 | * | No |
Hardware | cisco | ids_4250 | * | No |
Hardware | cisco | ids_4250_xl | * | No |
Hardware | cisco | ips_4240 | * | No |
Hardware | cisco | ips_4255 | * | No |
Hardware | cisco | ips_4260 | * | No |
Hardware | cisco | ips_4270 | * | No |