CVE-2022-20760: Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software DNS Inspection Denial of Service Vulnerability
A vulnerability in the DNS inspection handler of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service condition (DoS) on an affected device. This vulnerability is due to a lack of proper processing of incoming requests. An attacker could exploit this vulnerability by sending crafted DNS requests at a high rate to an affected device. A successful exploit could allow the attacker to cause the device to stop responding, resulting in a DoS condition.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-20760?
CVE-2022-20760 is a vulnerability in the DNS inspection handler of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software.
How does CVE-2022-20760 affect Cisco Firepower Threat Defense?
CVE-2022-20760 affects Cisco Firepower Threat Defense versions up to 6.4.0.15, versions between 6.5.0 and 6.6.5.2, and versions between 7.0.0 and 7.0.2.
How does CVE-2022-20760 affect Cisco Adaptive Security Appliance Software?
CVE-2022-20760 affects Cisco Adaptive Security Appliance Software versions up to 9.12.4.38, versions between 9.13.0 and 9.14.4, versions between 9.15.0 and 9.15.1.21, versions between 9.16.0 and 9.16.2.14, and versions between 9.17.0 and 9.17.1.7.
What is the severity of CVE-2022-20760?
CVE-2022-20760 has a severity rating of 7.5 (High).
How can I fix CVE-2022-20760?
To fix CVE-2022-20760, it is recommended to apply the necessary security updates provided by Cisco.