Six flaws in IKEv2 VPN handling on Cisco IOS, IOS XE, ASA and FTD let an unauthenticated attacker crash the device or leak memory until it fails, with no workaround short of patching.
Posts tagged: Cisco
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Authenticated Command Injection Vulnerabilities
An admin who already has valid credentials on Cisco ASA or FTD firewalls can inject crafted commands that run as root on the underlying OS, turning administrative access into full system control.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software DHCP Denial of Service Vulnerability
A firewall’s DHCP client will crash from crafted DHCPv4 packets sent by anyone on the same segment, exhausting memory and needing a manual reboot to recover.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software VPN Web Server Denial of Service Vulnerability
An authenticated VPN user can send crafted HTTP requests to the SSL VPN web server on Cisco ASA and FTD, creating or deleting operating system files and potentially forcing a reboot to restore VPN service.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Network Address Translation DNS Inspection Denial of Service Vulnerability
A DNS inspection bug in Cisco ASA and FTD firewalls lets an unauthenticated attacker crash the device with crafted DNS packets whenever NAT and DNS inspection are both enabled.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SSL/TLS Certificate Denial of Service Vulnerability
Crafted DNS packets that hit a static NAT rule with DNS inspection enabled can trigger a certificate-parsing bug in ASA and FTD software, forcing an unauthenticated reload of the firewall.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access SSL VPN Denial of Service Vulnerabilities
Two unauthenticated denial-of-service flaws in the VPN and management web servers of Cisco ASA and FTD firewalls let a crafted request or HTTP packet freeze VPN authentication or reload the device outright.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access VPN Web Server Denial of Service Vulnerability
An authenticated VPN user can crash an ASA or FTD firewall’s remote access SSL VPN web server with a malformed HTTP header, forcing an unplanned reload with no workaround available.
Cisco Secure Firewall Management Center Software Authorization Bypass Vulnerabilities
Low-privileged users on a multi-domain Cisco FMC deployment can pull troubleshoot files and generated reports belonging to other domains, breaking the confidentiality boundary between tenants.
Cisco Secure Firewall Management Center Software Command Injection Vulnerability
An admin-authenticated command injection in Cisco FMC’s web interface lets a logged-in administrator break out of lockdown mode restrictions to run root commands on the underlying OS.