QID 317175
Date Published: 2022-05-04
QID 317175: Cisco Firepower Threat Defense (FTD) Software Domain Name System (DNS) Enforcement Denial of Service (DoS) Vulnerability (cisco-sa-FTD-snort3-DOS-Aq38LVdM)
A vulnerability in the Snort rule evaluation function of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
Affected Products
This vulnerability affects Cisco platforms if they are running a vulnerable release of Cisco FTD Software and both of the following conditions are met:
The device is running Snort 3.
DNS reputation enforcement is enabled on the device.
Note: This QID is not checking for Snort 3 status. Hence QID is kept as potential
Vulnerable Version:
6.7.0 prior to 7.0.2
7.1.0 prior to 7.1.0.1
A successful exploit could allow the attacker to cause traffic that is going through the affected device to be dropped, resulting in a DoS condition.
Customers are advised to refer to cisco-sa-FTD-snort3-DOS-Aq38LVdM for more information.
- cisco-sa-FTD-snort3-DOS-Aq38LVdM -
tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-FTD-snort3-DOS-Aq38LVdM
CVEs related to QID 317175
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-FTD-snort3-DOS-Aq38LVdM |
|