cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
799
Views
0
Helpful
4
Replies

CSCum96401 - Cisco ASA IKEv2 Denial of Service Vulnerability

mahesh18
Level 6
Level 6

Hi Everyone,

 

ASA is configured with ikev2 and below is config

5520# show running-config crypto ikev2 | include enable

crypto ikev2 enable outside client-services port 443

5520# show running-config crypto map | include interface

crypto map outside_map interface outside

 

I checked below weblink

CSCum96401 - Cisco ASA IKEv2 Denial of Service Vulnerability

Not Affected

Not Affected

Not Affected

8.4(7.15)

Not Affected

8.6(1.14)

Not Affected

9.0(4.8)

9.1(5.1)

Not Affected

Not Affected

 

https://tools.cisco.com/bugsearch/bug/CSCum96401

 

ASA which i am running has version Cisco Adaptive Security Appliance Software Version 8.4(7)

sh flash shows

asa847-k8.bin

 

Need to confirm if my ASA is not effected by this bug?

 

Regards

MAhesh

 

 

 

2 Accepted Solutions

Accepted Solutions

Prashant Joshi
Cisco Employee
Cisco Employee

Hi Mahesh,

 

Your ASA code  (asa847-k8.bin) is affected by this Bug, recommended release is 8.4(7.23) and later.

this bug is first fixed in 8.4(7.15).

 

Thanks,

Prashant Joshi

View solution in original post

Hi Mahesh,

Upgrading to an interim maintenance release from within the same minor release will not change any configuration (other than the boot image name, that is). 

View solution in original post

4 Replies 4

Prashant Joshi
Cisco Employee
Cisco Employee

Hi Mahesh,

 

Your ASA code  (asa847-k8.bin) is affected by this Bug, recommended release is 8.4(7.23) and later.

this bug is first fixed in 8.4(7.15).

 

Thanks,

Prashant Joshi

 

Hi Prashant,

 

If i upgrade the ASA code to 8.4(7.23) need to know if it will change any config like

ACL,Natting etc?

Regards

MAhesh

Hi Mahesh,

Upgrading to an interim maintenance release from within the same minor release will not change any configuration (other than the boot image name, that is). 

Many thanks Marvin.

 

Regards

MAhesh

Review Cisco Networking products for a $25 gift card