First published: Wed May 01 2019(Updated: )
Multiple vulnerabilities in the Server Message Block (SMB) Protocol preprocessor detection engine for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, adjacent or remote attacker to cause a denial of service (DoS) condition. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190501-frpwr-smb-snort
Credit: These vulnerabilities were found during the resolution a Cisco TAC support case
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco FTD Software | =6.2.3<6.2.3.12=6.2.2<6.2.3.12=6.2.1<6.2.3.12=6.2.0<6.2.3.12=6.1.0<6.2.3.12=6.0.1<6.2.3.12=6.0<6.2.3.12 | 6.2.3.12 6.2.3.12 6.2.3.12 6.2.3.12 6.2.3.12 6.2.3.12 6.2.3.12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of cisco-sa-20190501-frpwr-smb-snort is critical due to potential denial of service conditions.
To fix cisco-sa-20190501-frpwr-smb-snort, upgrade to a patched version of Cisco FTD Software, such as 6.2.3.13 or later.
cisco-sa-20190501-frpwr-smb-snort vulnerabilities can allow unauthenticated attackers to exploit the SMB protocol for denial of service attacks.
Cisco FTD Software versions 6.2.3, 6.2.2, 6.2.1, 6.2.0, 6.1.0, and 6.0.x are affected by cisco-sa-20190501-frpwr-smb-snort.
You can determine if your system is vulnerable to cisco-sa-20190501-frpwr-smb-snort by checking the version of Cisco FTD Software you are running and comparing it to the affected versions.