Cisco Secure Firewall OSPF Memory Corruption Vulnerability Leading to Denial-of-Service

Vulnerability

A vulnerability exists in the OSPF protocol of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software. This vulnerability allows an unauthenticated, adjacent attacker to corrupt memory on an affected device, causing it to reboot and resulting in a denial-of-service (DoS) condition. The issue arises from insufficient input validation when processing OSPF protocol packets. Exploitation involves sending crafted OSPF packets to the device.

Impact

Exploitation of this vulnerability leads to memory corruption, causing the affected device to reload unexpectedly and creating a DoS condition.

Remediation

Cisco has released software updates to address this vulnerability. Instructions for upgrading Cisco Secure Firewall ASA and FTD Software are available in the respective Cisco upgrade guides. For Cisco Secure Firewall ASA, consult the Compatibility and Upgrade Guide. For Cisco Secure FTD, refer to the Cisco Secure FMC Upgrade Guide.

Added: Mar 4, 2026, 7:25 PM
Updated: Mar 4, 2026, 7:25 PM

Vulnerability Rating

Custom Algorithm
spread
6.8
impact
2.5
exploitability
4.9
remediation
0.0
relevance
3.5
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.