Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software for Secure Firewall 3100 and 4200 Series DTLS Denial of Service Vulnerability
Cisco patched a DTLS flaw in ASA and FTD software for Secure Firewall 3100/4200 series letting unauthenticated attackers trigger device reloads.
Improper resource management when processing DTLS messages in Cisco ASA and Secure Firewall Threat Defense software for Secure Firewall 3100 and 4200 series devices allows an unauthenticated remote attacker to cause a denial of service. Exploitation via a crafted stream of DTLS traffic causes the device to reload. Cisco has released software updates.
- Unauthenticated remote denial-of-service via crafted DTLS traffic
- Affects ASA and FTD on Secure Firewall 3100 and 4200 series
- Successful exploit forces the device to reload
A vulnerability in Datagram TLS (DTLS) message handling of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software for Cisco Secure Firewall 3100 Series and 4200 Series devices could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper resource management when processing certain DTLS messages. An attacker could exploit this vulnerability by sending a crafted stream of DTLS traffic to an affected device. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition. Cisco has released…
This source does not provide full text. Read it at sec.cloudapps.cisco.com.