CVE-2021-34793: Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Transparent Mode Denial of Service Vulnerability
A vulnerability in the TCP Normalizer of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software operating in transparent mode could allow an unauthenticated, remote attacker to poison MAC address tables, resulting in a denial of service (DoS) vulnerability. This vulnerability is due to incorrect handling of certain TCP segments when the affected device is operating in transparent mode. An attacker could exploit this vulnerability by sending a crafted TCP segment through an affected device. A successful exploit could allow the attacker to poison the MAC address tables in adjacent devices, resulting in network disruption.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2021-34793.
What is the severity of CVE-2021-34793?
The severity of CVE-2021-34793 is high with a CVSS score of 8.6.
Which software is affected by CVE-2021-34793?
The Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software are affected by CVE-2021-34793.
How does CVE-2021-34793 impact the affected software?
CVE-2021-34793 allows an unauthenticated, remote attacker to poison MAC address tables, resulting in a denial of service (DoS) vulnerability.
How can I fix CVE-2021-34793?
To fix CVE-2021-34793, it is recommended to upgrade to a fixed version of Cisco ASA Software or Cisco Firepower Threat Defense (FTD) Software.