CVE-2016-1369: High severity cisco asa firepower vulnerability
The Adaptive Security Appliance (ASA) 5585-X FirePOWER Security Services Processor (SSP) module for Cisco ASA with FirePOWER Services 5.3.1 through 6.0.0 misconfigures kernel logging, which allows remote attackers to cause a denial of service (resource consumption, and inspection outage or module outage) via a flood of crafted IP traffic, aka Bug ID CSCux19922.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-1369?
The severity of CVE-2016-1369 is critical as it can allow remote attackers to cause a denial of service.
How do I fix CVE-2016-1369?
To fix CVE-2016-1369, update your Cisco ASA with FirePOWER Services to a patched version beyond 6.0.0.
What systems are affected by CVE-2016-1369?
CVE-2016-1369 affects Cisco ASA with FirePOWER Services versions 5.3.1 through 6.0.0.
What is the impact of CVE-2016-1369?
The impact of CVE-2016-1369 includes potential resource consumption and exhaustion leading to an inspection outage.
Is CVE-2016-1369 being actively exploited?
At the time of reporting, CVE-2016-1369 was considered to be actively exploitable in the wild.