QID 317256
Date Published: 2022-11-09
QID 317256: Cisco Email Security Appliance (ESA) Denial of Service (DoS) Vulnerability (cisco-sa-esa-dos-gdghHmbV)
A vulnerability in Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated remote attacker to cause a denial of service (DoS) condition on an affected device.
Affected Versions:
This vulnerability affects Cisco AsyncOS Software for Cisco ESA Release .
QID Detection Logic (Authenticated):
The check matches Cisco ESA OS version retrieved via Unix Auth using "version" command.
A successful exploit could allow the attacker to cause the device to drop new TLS email messages that come from the associated email servers.
Solution
Customers are advised to refer to cisco-sa-esa-dos-gdghHmbV for more information.
Vendor References
- cisco-sa-esa-dos-gdghHmbV -
tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-dos-gdghHmbV
CVEs related to QID 317256
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-esa-dos-gdghHmbV |
|