漏洞信息详情
Cisco Firepower Threat Defense和Cisco Adaptive Security Appliances Software 资源管理错误漏洞
漏洞简介
Cisco Firepower Threat Defense(FTD)和Cisco Adaptive Security Appliances Software(ASA Software)都是美国思科(Cisco)公司的产品。Cisco Firepower Threat Defense是一套提供下一代防火墙服务的统一软件。Cisco Adaptive Security Appliances Software是一套防火墙和网络安全平台。该平台提供了对数据和网络资源的高度安全的访问等功能。
Cisco Adaptive Security Appliance (ASA) 和 Cisco Firepower Threat Defense (FTD) 存在安全漏洞,该漏洞源于内存耗尽的情况。攻击者可利用该漏洞可以利用这个漏洞,通过受Cisco Adaptive Security Appliance (ASA) 和 Cisco Firepower Threat Defense (FTD) 影响的设备发送高速率的精心设计的TCP流量。成功利用该漏洞可能使攻击者可利用该漏洞耗尽设备资源,导致传输到受影响设备的流量出现DoS状态。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-dos-QFcNEPfx
参考网址
来源:CISCO
链接:https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-dos-QFcNEPfx
来源:tools.cisco.com
链接:https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-dos-QFcNEPfx
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/Cisco-ASA-Software-memory-leak-via-TCP-Packet-33666
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.3642.3
来源:nvd.nist.gov
链接:https://nvd.nist.gov/vuln/detail/CVE-2020-3554
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.3642/
来源:www.nsfocus.net
链接:http://www.nsfocus.net/vulndb/50230
受影响实体
暂无
补丁
暂无
还没有评论,来说两句吧...