cisco-sa-20190501-frpwr-smb-snort: Cisco Firepower Threat Defense Software SMB Protocol Preprocessor Detection Engine Denial of Service Vulnerabilities
Multiple vulnerabilities in the Server Message Block (SMB) Protocol preprocessor detection engine for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, adjacent or remote attacker to cause a denial of service (DoS) condition. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190501-frpwr-smb-snort
Credit
Affected Software
Event History
Frequently Asked Questions
What is the severity of cisco-sa-20190501-frpwr-smb-snort?
The severity of cisco-sa-20190501-frpwr-smb-snort is critical due to potential denial of service conditions.
How do I fix cisco-sa-20190501-frpwr-smb-snort?
To fix cisco-sa-20190501-frpwr-smb-snort, upgrade to a patched version of Cisco FTD Software, such as 6.2.3.13 or later.
What types of attacks can cisco-sa-20190501-frpwr-smb-snort help prevent?
cisco-sa-20190501-frpwr-smb-snort vulnerabilities can allow unauthenticated attackers to exploit the SMB protocol for denial of service attacks.
Which versions of Cisco FTD Software are affected by cisco-sa-20190501-frpwr-smb-snort?
Cisco FTD Software versions 6.2.3, 6.2.2, 6.2.1, 6.2.0, 6.1.0, and 6.0.x are affected by cisco-sa-20190501-frpwr-smb-snort.
How can I determine if my system is vulnerable to cisco-sa-20190501-frpwr-smb-snort?
You can determine if your system is vulnerable to cisco-sa-20190501-frpwr-smb-snort by checking the version of Cisco FTD Software you are running and comparing it to the affected versions.