Memory leak in the connection-manager implementation in Cisco Adaptive Security Appliance (ASA) Software 9.1(.3) and earlier allows remote attackers to cause a denial of service (multi-protocol management outage) by making multiple management session requests, aka Bug ID CSCug33233.
The product does not release a resource after its effective lifetime has ended, i.e., after the resource is no longer needed.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/64148 | vdb entry third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/89442 | vdb entry third party advisory |
http://www.securitytracker.com/id/1029441 | vdb entry third party advisory broken link |
http://osvdb.org/100682 | vdb entry broken link |
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-6707 | vendor advisory broken link |
http://tools.cisco.com/security/center/viewAlert.x?alertId=32065 | vendor advisory |