AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2015-0676

HIGH · CVSS 7.1 EPSS 1.12%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2015-04-13 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2015-0676
Severity
HIGH
CVSS
7.1
EPSS
1.12%
Cisco

Original Filing — NVD Description

The DNS implementation in Cisco Adaptive Security Appliance (ASA) Software 7.2 before 7.2(5.16), 8.2 before 8.2(5.57), 8.3 before 8.3(2.44), 8.4 before 8.4(7.28), 8.5 before 8.5(1.24), 8.6 before 8.6(1.17), 8.7 before 8.7(1.16), 9.0 before 9.0(4.33), 9.1 before 9.1(6.1), 9.2 before 9.2(3.4), and 9.3 before 9.3(3) allows man-in-the-middle attackers to cause a denial of service (memory consumption or device outage) by triggering outbound DNS queries and then sending crafted responses to these queries, aka Bug ID CSCuq77655.