Vulnslist

find the latest Cisco vulnerabilities

CVE-2021-1422

A vulnerability in the software cryptography module of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker or an unauthenticated attacker in a man-in-the-middle position to cause an unexpected reload of the device that results in a denial of service (DoS) condition. The vulnerability is due to a logic error in how the software cryptography module handles specific types of decryption errors. An attacker could exploit this vulnerability by sending malicious packets over an established IPsec connection. A successful exploit could cause the device to crash, forcing it to reload. Important: Successful exploitation of this vulnerability would not cause a compromise of any encrypted data. Note: This vulnerability affects only Cisco ASA Software Release 9.16.1 and Cisco FTD Software Release 7.0.0.

SeverityHIGH
CVSS7.7
CWECWE-617
KEV
Published
Modified

Related Products

Product Advisory Evidence
Cisco Secure Firewall Threat Defense Virtual cisco-sa-asa-ftd-ipsec-dos-TFKQbgWC Cisco OpenVuln
Cisco Secure Firewall Threat Defense (FTD) Software cisco-sa-asa-ftd-ipsec-dos-TFKQbgWC Cisco OpenVuln
Cisco Secure Firewall Adaptive Security Appliance (ASA) Software cisco-sa-asa-ftd-ipsec-dos-TFKQbgWC Cisco OpenVuln
Cisco Firepower Threat Defense Software cisco-sa-asa-ftd-ipsec-dos-TFKQbgWC Cisco OpenVuln
Cisco Firepower 9000 Series cisco-sa-asa-ftd-ipsec-dos-TFKQbgWC Cisco OpenVuln
Cisco Firepower 4100 Series cisco-sa-asa-ftd-ipsec-dos-TFKQbgWC Cisco OpenVuln
Cisco Firepower 2100 Series cisco-sa-asa-ftd-ipsec-dos-TFKQbgWC Cisco OpenVuln
Cisco Firepower 1000 Series cisco-sa-asa-ftd-ipsec-dos-TFKQbgWC Cisco OpenVuln
Cisco Adaptive Security Virtual Appliance (ASAv) cisco-sa-asa-ftd-ipsec-dos-TFKQbgWC Cisco OpenVuln
Cisco Adaptive Security Appliance (ASA) Software cisco-sa-asa-ftd-ipsec-dos-TFKQbgWC Cisco OpenVuln