First published: Wed Apr 27 2022(Updated: )
A vulnerability in the connection handling function in Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper traffic handling when platform limits are reached. An attacker could exploit this vulnerability by sending a high rate of UDP traffic through an affected device. A successful exploit could allow the attacker to cause all new, incoming connections to be dropped, resulting in a DoS condition. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ftd-dos-JnnJm4wB This advisory is part of the April 2022 release of the Cisco ASA, FTD, and FMC Security Advisory Bundled publication. For a complete list of the advisories and links to them, see Cisco Event Response: April 2022 Cisco ASA, FMC, and FTD Software Security Advisory Bundled Publication.
Credit: This vulnerability was found during the resolution a Cisco TAC support case
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco FTD Software | =7.0.0<7.0.2 (May 2022)>=6.5.0=6.6.0<=6.7.0<Cisco_FTD_Hotfix_AA-6.7.0.4-2.sh.REL.tarCisco_FTD_SSP_FP1K_Hotfix_AA-6.7.0.4-2.sh.REL.tarCisco_FTD_SSP_FP2K_Hotfix_AA-6.7.0.4-2.sh.REL.tarCisco_FTD_SSP_Hotfix_AA-6.7.0.4-2.sh.REL.tar>=6.2.2 and earlier=6.2.3=6.3.0<=6.4.0<6.4.0.15 (May 2022) | 7.0.2 (May 2022) Cisco_FTD_Hotfix_AA-6.7.0.4-2.sh.REL.tarCisco_FTD_SSP_FP1K_Hotfix_AA-6.7.0.4-2.sh.REL.tarCisco_FTD_SSP_FP2K_Hotfix_AA-6.7.0.4-2.sh.REL.tarCisco_FTD_SSP_Hotfix_AA-6.7.0.4-2.sh.REL.tar 6.4.0.15 (May 2022) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Cisco Firepower Threat Defense Software vulnerability is cisco-sa-ftd-dos-JnnJm4wB.
The severity rating of cisco-sa-ftd-dos-JnnJm4wB vulnerability is 8.6 (on a scale of 1-10, with 10 being the highest severity).
The cisco-sa-ftd-dos-JnnJm4wB vulnerability can cause a denial of service (DoS) condition on an affected Cisco Firepower Threat Defense (FTD) Software device.
The affected software for cisco-sa-ftd-dos-JnnJm4wB vulnerability is Cisco Firepower Threat Defense (FTD) Software versions 6.2.2 and earlier, 6.2.3, 6.3.0, 6.4.0, 6.4.0.15, 6.5.0, 6.6.0, 6.7.0, and 7.0.0 up to 7.0.2.
To fix the cisco-sa-ftd-dos-JnnJm4wB vulnerability, it is recommended to upgrade to Cisco Firepower Threat Defense (FTD) Software version 7.0.2 or apply the specified hotfixes for earlier versions.