PT-2023-7572 · Cisco · Cisco Ftd
Sanmith Prakash
·
Published
2023-11-01
·
Updated
2024-01-25
·
CVE-2023-20244
CVSS v3.1
8.6
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series Firewalls (affected versions not specified)
Description
A vulnerability in the internal packet processing of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This is due to improper handling of certain packets when they are sent to the inspection engine. An attacker could exploit this vulnerability by sending a series of crafted packets to an affected device, potentially depleting all 9,472 byte blocks on the device and resulting in traffic loss across the device or an unexpected reload of the device.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Improper Resource Release
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Cisco Ftd