CVE-2020-3283: Cisco Firepower 1000 Series SSL/TLS Denial of Service Vulnerability
A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Security (TLS) handler of Cisco Firepower Threat Defense (FTD) Software when running on the Cisco Firepower 1000 Series platform could allow an unauthenticated, remote attacker to trigger a denial of service (DoS) condition on an affected device. The vulnerability is due to a communication error between internal functions. An attacker could exploit this vulnerability by sending a crafted SSL/TLS message to an affected device. A successful exploit could allow the attacker to cause a buffer underrun, which leads to a crash. The crash causes the affected device to reload.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-3283?
The severity of CVE-2020-3283 is high, with a severity value of 8.6.
How does CVE-2020-3283 affect Cisco Firepower Threat Defense?
CVE-2020-3283 affects Cisco Firepower Threat Defense running on the Cisco Firepower 1000 Series platform, potentially triggering a denial of service (DoS) condition.
Which Cisco ASA devices are affected by CVE-2020-3283?
Cisco ASA devices such as ASA 5505, ASA 5510, ASA 5512-x, ASA 5515-x, ASA 5520, ASA 5525-x, ASA 5540, ASA 5545-x, ASA 5550, ASA 5555-x, ASA 5580, and ASA 5585-x are not vulnerable to CVE-2020-3283.
How can I fix CVE-2020-3283?
To fix CVE-2020-3283, Cisco has released software updates. Please refer to the Cisco Security Advisory for specific details and instructions.
Where can I find more information about CVE-2020-3283?
More information about CVE-2020-3283 can be found in the Cisco Security Advisory.