Guest

Preview Tool

Cisco Bug: CSCum00360 - ASA - DHCP Discover Sent out during boot process

Last Modified

Apr 16, 2020

Products (1)

  • Cisco ASA 5500-X Series Firewalls

Known Affected Releases

8.6(1.5)

Description (partial)

Symptom:
On the ASA 5500-X platform the second highest port will send out a DHCP Discover request during the pre-boot process from IPMI.  If a DHCP server responds, the ASA will 
obtain the offered IP, but it will not be visible in the running configuration.  However, users able to connect to this IP address can potentially shutdown the device or cause it to 
reload. An attacker needs to be layer-2 adjacent to the device in order to hijack the DHCP request.

Conditions:
Cisco ASA 5500-X during the pre-boot process from IPMI.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.