PT-2023-7572 · Cisco · Cisco Ftd

Sanmith Prakash

·

Publicado

2023-11-01

·

Atualizado

2024-01-25

·

CVE-2023-20244

CVSS v3.1

8.6

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series Firewalls (affected versions not specified)
Description A vulnerability in the internal packet processing of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This is due to improper handling of certain packets when they are sent to the inspection engine. An attacker could exploit this vulnerability by sending a series of crafted packets to an affected device, potentially depleting all 9,472 byte blocks on the device and resulting in traffic loss across the device or an unexpected reload of the device.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Resource Release

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2023-08628
CVE-2023-20244

Produtos afetados

Cisco Ftd