First published: Wed May 06 2020(Updated: )
A vulnerability in the implementation of the Border Gateway Protocol (BGP) module in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to incorrect processing of certain BGP packets. An attacker could exploit this vulnerability by sending a crafted BGP packet. A successful exploit could allow the attacker to cause a DoS condition on the affected device.
Credit: ykramarz@cisco.com ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Adaptive Security Appliance | <9.6.4.36 | |
Cisco Adaptive Security Appliance Software | >=9.7<9.8.4.10 | |
Cisco Adaptive Security Appliance Software | >=9.9<9.10.1.30 | |
Cisco Adaptive Security Appliance Software | >=9.12<9.12.2.9 | |
Cisco Asa 5505 | ||
Cisco Asa 5510 | ||
Cisco Asa 5512-x | ||
Cisco Asa 5515-x | ||
Cisco Asa 5520 | ||
Cisco Asa 5525-x | ||
Cisco Asa 5550 | ||
Cisco Asa 5555-x | ||
Cisco Asa 5580 | ||
Cisco Asa 5585-x | ||
Cisco Firepower Threat Defense | <6.3.0.5 | |
Cisco Firepower Threat Defense | >=6.4.0<6.4.0.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-3305 is a vulnerability in the implementation of the Border Gateway Protocol (BGP) module in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software.
CVE-2020-3305 allows an unauthenticated, remote attacker to cause a denial of service (DoS) condition.
CVE-2020-3305 allows an unauthenticated, remote attacker to cause a denial of service (DoS) condition.
CVE-2020-3305 has a severity rating of 7.5 (high).
To fix CVE-2020-3305, it is recommended to upgrade to a fixed software release as mentioned in the Cisco Security Advisory.