CVE-2013-1138: Cisco Adaptive Security Appliance

Medium severity, CVSS 5.0. EPSS: 1.5% chance of exploitation in the next 30 days.

The NAT process on Cisco Adaptive Security Appliances (ASA) devices allows remote attackers to cause a denial of service (connections-table memory consumption) via crafted packets, aka Bug ID CSCue46386.

Affected products

  • Cisco Adaptive Security Appliance
  • Cisco Adaptive Security Appliance Software: affected versions not specified; version 7.0 only; version 7.0(0) only; version 7.0(1) only; version 7.0(2) only; version 7.0(4) only; …

Published 2013-02-25. Last modified 2026-06-16.