Cisco Secure Firewall ASA
cpe:2.3:h:cisco:asa_5500:*:*:*:*:*:*:*, +32 more
A denial-of-service vulnerability has been identified in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software. This vulnerability allows an unauthenticated, adjacent attacker to cause an affected device to reload unexpectedly, leading to a DoS condition. The issue arises from insufficient input validation when processing OSPF link-state update packets. Exploitation involves sending crafted, unauthenticated OSPF packets, which can overwrite memory outside the packet data, causing the device to crash and reboot.
Exploitation of this vulnerability causes the affected device to reload unexpectedly, creating a denial-of-service condition.
Cisco has released software updates to address this vulnerability. Instructions for upgrading Cisco Secure FTD devices are available in the Cisco Secure FMC upgrade guide. For Cisco Secure Firewall ASA, consult the Cisco Secure Firewall ASA Upgrade Guide and Compatibility Guide.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.