PT-2023-7572 · Cisco · Cisco Ftd

Sanmith Prakash

·

Published

2023-11-01

·

Updated

2024-01-25

·

CVE-2023-20244

CVSS v3.1

8.6

High

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series Firewalls (affected versions not specified)
Description A vulnerability in the internal packet processing of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This is due to improper handling of certain packets when they are sent to the inspection engine. An attacker could exploit this vulnerability by sending a series of crafted packets to an affected device, potentially depleting all 9,472 byte blocks on the device and resulting in traffic loss across the device or an unexpected reload of the device.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Resource Release

Weakness Enumeration

Related Identifiers

BDU:2023-08628
CVE-2023-20244

Affected Products

Cisco Ftd