CVE-2020-3189High· 8.6▾ TwilightA vulnerability in the VPN System Logging functionality for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a memory leak that can deplete system memory over time, which can cause un…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 47.3 · likelihood 0.4 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Aug 11.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
1.8%
1.8% → 1.8%
A vulnerability in the VPN System Logging functionality for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a memory leak that can deplete system memory over time, which can cause unexpected system behaviors or device crashes. The vulnerability is due to the system memory not being properly freed for a VPN System Logging event generated when a VPN session is created or deleted. An attacker could exploit this vulnerability by repeatedly creating or deleting a VPN tunnel connection, which could leak a small amount of system memory for each logging event. A successful exploit could allow the attacker to cause system memory depletion, which can lead to a systemwide denial of service (DoS) condition. The attacker does not have any control of whether VPN System Logging is configured or not on the device, but it is enabled by default.
secure_firewall_threat_defense = 6.2.3.12secure_firewall_threat_defense = 6.2.3.13secure_firewall_threat_defense = 6.2.3.14secure_firewall_threat_defense = 6.2.3.15asa_5505_firmware = 9.9(2)asa_5505_firmware = 9.9(2.21)asa_5505_firmware = 9.9(2.52)asa_5505_firmware = 9.9(2.55)asa_5510_firmware = 9.9(2)asa_5510_firmware = 9.9(2.21)asa_5510_firmware = 9.9(2.52)asa_5510_firmware = 9.9(2.55)asa_5512-x_firmware = 9.9(2)asa_5512-x_firmware = 9.9(2.21)asa_5512-x_firmware = 9.9(2.52)asa_5512-x_firmware = 9.9(2.55)asa_5515-x_firmware = 9.9(2)asa_5515-x_firmware = 9.9(2.21)asa_5515-x_firmware = 9.9(2.52)asa_5515-x_firmware = 9.9(2.55)asa_5520_firmware = 9.9(2)asa_5520_firmware = 9.9(2.21)asa_5520_firmware = 9.9(2.52)asa_5520_firmware = 9.9(2.55)asa_5525-x_firmware = 9.9(2)asa_5525-x_firmware = 9.9(2.21)asa_5525-x_firmware = 9.9(2.52)asa_5525-x_firmware = 9.9(2.55)asa_5540_firmware = 9.9(2)asa_5540_firmware = 9.9(2.21)asa_5540_firmware = 9.9(2.52)asa_5540_firmware = 9.9(2.55)asa_5545-x_firmware = 9.9(2)asa_5545-x_firmware = 9.9(2.21)asa_5545-x_firmware = 9.9(2.52)asa_5545-x_firmware = 9.9(2.55)asa_5550_firmware = 9.9(2)asa_5550_firmware = 9.9(2.21)asa_5550_firmware = 9.9(2.52)asa_5550_firmware = 9.9(2.55)asa_5555-x_firmware = 9.9(2)asa_5555-x_firmware = 9.9(2.21)asa_5555-x_firmware = 9.9(2.52)asa_5555-x_firmware = 9.9(2.55)asa_5580_firmware = 9.9(2)asa_5580_firmware = 9.9(2.21)asa_5580_firmware = 9.9(2.52)asa_5580_firmware = 9.9(2.55)asa_5585-x_firmware = 9.9(2)asa_5585-x_firmware = 9.9(2.21)asa_5585-x_firmware = 9.9(2.52)asa_5585-x_firmware = 9.9(2.55)Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2020-3563High· 8.6A vulnerability in the packet processing functionality of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device
CVE-2020-3533High· 8.6A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to restart unexpectedly.…
CVE-2020-3373High· 8.6A vulnerability in the IP fragment-handling implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a memory leak on an…
CVE-2020-3255High· 7.5A vulnerability in the packet processing functionality of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device
CVE-2020-3254High· 7.5Multiple vulnerabilities in the Media Gateway Control Protocol (MGCP) inspection feature of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to c…
CVE-2020-3196High· 8.6A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Security (TLS) handler of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacke…