cisco-sa-20190501-asa-ftd-entropy: Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Low-Entropy Keys Vulnerability
Cisco has released software updates that address this vulnerability. There are workarounds that address this vulnerability. This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190501-asa-ftd-entropy
Credit
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of cisco-sa-20190501-asa-ftd-entropy?
The severity of cisco-sa-20190501-asa-ftd-entropy is considered high due to potential exploitation risks.
How do I fix cisco-sa-20190501-asa-ftd-entropy?
To fix cisco-sa-20190501-asa-ftd-entropy, you should upgrade to the latest recommended software versions provided by Cisco.
What products are affected by cisco-sa-20190501-asa-ftd-entropy?
cisco-sa-20190501-asa-ftd-entropy affects Cisco ASA Software versions 9.8 to 9.9.2.50 and Cisco FTD Software versions 6.2.1 to 6.2.3.12.
Are there workarounds for cisco-sa-20190501-asa-ftd-entropy?
Yes, Cisco has provided workarounds to mitigate the risks associated with cisco-sa-20190501-asa-ftd-entropy.
When was cisco-sa-20190501-asa-ftd-entropy disclosed?
cisco-sa-20190501-asa-ftd-entropy was disclosed on May 1, 2019.