First published: Wed Dec 20 2023(Updated: )
An issue was discovered in Stormshield Network Security (SNS) 4.0.0 through 4.3.21, 4.4.0 through 4.6.8, and 4.7.0. Sending a crafted ICMP packet may lead to a crash of the ASQ engine.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Stormshield Network Security | >=4.0.0<4.3.22 | |
Stormshield Network Security | >=4.4.0<4.6.9 | |
Stormshield Network Security | =4.7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-47093 is considered a high severity vulnerability due to its potential to crash the ASQ engine.
To mitigate CVE-2023-47093, it is recommended to upgrade Stormshield Network Security to the latest version beyond 4.3.21, 4.6.8, or 4.7.0.
CVE-2023-47093 can lead to a denial of service by crashing the ASQ engine when a crafted ICMP packet is sent.
CVE-2023-47093 affects Stormshield Network Security versions 4.0.0 to 4.3.21, 4.4.0 to 4.6.8, and exactly 4.7.0.
Currently, there are no documented workarounds for CVE-2023-47093, so upgrading to a secure version is the recommended approach.