CVE-2013-1218: Cisco ASA 5500-X Series Ips Ssp Software

High severity, CVSS 7.8. EPSS: 1.9% chance of exploitation in the next 30 days.

Cisco Intrusion Prevention System (IPS) Software in ASA 5500-X IPS-SSP software modules before 7.1(7)sp1E4 allows remote attackers to cause a denial of service (Analysis Engine process hang or device reload) via fragmented (1) IPv4 or (2) IPv6 packets, aka Bug ID CSCue51272.

Affected products

  • Cisco ASA 5500-X Series Ips Ssp Software: version 7.1 only
  • Cisco ASA 5585-X: affected versions not specified
  • Cisco Idsm-2: affected versions not specified
  • Cisco Intrusion Prevention System: up to and including 7.1
  • Cisco Ips 4345 Sensor: affected versions not specified
  • Cisco Ips 4360 Sensor: affected versions not specified
  • Cisco Ips 4510 Sensor: affected versions not specified
  • Cisco Ips 4520 Sensor: affected versions not specified
  • Cisco Ips Nme: affected versions not specified

Published 2013-07-18. Last modified 2026-06-16.