Multiple Cisco products are affected by vulnerabilities in the Snort 3 VBA feature that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to crash. These vulnerabilities are due to improper error checking when decompressing VBA data. An attacker could exploit these vulnerabilities by sending crafted VBA data to the Snort 3 Detection Engine on the targeted device. A successful exploit could allow the attacker to cause the Snort 3 Detection Engine to unexpectedly restart, causing a DoS condition.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:LCisco Secure Firewall Threat Defense
APPCisco7.2.07.2.0.17.2.17.2.107.2.10.27.2.27.2.37.2.47.2.4.17.2.57.2.5.17.2.5.27.2.67.2.77.2.8+ 22 moreCisco Snort
APPCisco3.0.0-233 – 3.9.6.0 (excl.)Cisco Unified Threat Defense Snort Intrusion Prevention System Engine
OSCisco17.12.1a17.12.217.12.317.12.3a17.12.417.12.4a17.12.4b17.12.517.12.5a17.12.5b17.12.5c17.12.5d17.12.617.13.1a17.14.1a+ 15 more
Related vulnerabilities
RCE jako root w Cisco ASA i FTD poprzez podatny serwer VPN web
RCE w web services Cisco ASA, FTD, IOS, IOS XE, IOS XR przez HTTP
Cisco FTD: statyczne konta z zakodowanymi hasłami umożliwiają nieautoryzowany dostęp
Path Traversal w Cisco ASA i FTD — nieautoryzowany dostęp do plików przez WebVPN/AnyConnect
Cisco ASA SSL VPN — double free umożliwiający RCE lub DoS