---
id: CVE-2019-12678
title: >-
  A vulnerability in the Session Initiation Protocol (SIP) inspection module of
  Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat
  Defense (FTD) Software could allow an unauthenticated, remote attacker to
  cause a d…
summary: >-
  A vulnerability in the Session Initiation Protocol (SIP) inspection module of
  Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat
  Defense (FTD) Software could allow an unauthenticated, remote attacker to
  cause a d…
severity: high
cvss: 7.5
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'
cwe:
  - CWE-191
  - CWE-191
vendor: cisco
product: adaptive_security_appliance
affected:
  - adaptive_security_appliance < 9.4.4.37
  - 'adaptive_security_appliance_software >= 9.5, < 9.6.4.34'
  - 'adaptive_security_appliance_software >= 9.7, < 9.8.4.7'
  - 'adaptive_security_appliance_software >= 9.9, < 9.9.2.56'
  - 'adaptive_security_appliance_software >= 9.10, < 9.10.1.27'
  - 'adaptive_security_appliance_software >= 9.12, < 9.12.2.1'
  - secure_firewall_threat_defense < 6.2.3.15
  - 'secure_firewall_threat_defense >= 6.3.0, < 6.3.0.4'
  - 'secure_firewall_threat_defense >= 6.4.0, < 6.4.0.4'
patched:
  - adaptive_security_appliance 9.4.4.37
  - adaptive_security_appliance_software 9.12.2.1
  - secure_firewall_threat_defense 6.4.0.4
published: '2019-10-02'
updated: '2026-08-11'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2019-12678'
references:
  - url: >-
      https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20191002-asa-ftd-sip-dos
    label: psirt@cisco.com
  - url: >-
      https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20191002-asa-ftd-sip-dos
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
epss: 0.01824
epssPercentile: 0.77856
ingestedAt: '2026-08-11T19:48:26.945Z'
---

## Overview

A vulnerability in the Session Initiation Protocol (SIP) inspection module of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper parsing of SIP messages. An attacker could exploit this vulnerability by sending a malicious SIP packet through an affected device. A successful exploit could allow the attacker to trigger an integer underflow, causing the software to try to read unmapped memory and resulting in a crash.

## Affected

- `adaptive_security_appliance < 9.4.4.37`
- `adaptive_security_appliance_software >= 9.5, < 9.6.4.34`
- `adaptive_security_appliance_software >= 9.7, < 9.8.4.7`
- `adaptive_security_appliance_software >= 9.9, < 9.9.2.56`
- `adaptive_security_appliance_software >= 9.10, < 9.10.1.27`
- `adaptive_security_appliance_software >= 9.12, < 9.12.2.1`
- `secure_firewall_threat_defense < 6.2.3.15`
- `secure_firewall_threat_defense >= 6.3.0, < 6.3.0.4`
- `secure_firewall_threat_defense >= 6.4.0, < 6.4.0.4`

## Remediation

Upgrade past the affected range:

- `adaptive_security_appliance 9.4.4.37`
- `adaptive_security_appliance_software 9.12.2.1`
- `secure_firewall_threat_defense 6.4.0.4`
