QID 317273

Date Published: 2022-11-17

QID 317273: Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software SNMP Denial of Service (DoS) Vulnerability (cisco-sa-asaftd-snmp-dos-qsqBNM6x)

A vulnerability in the Simple Network Management Protocol (SNMP) feature of Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.

Affected Products
Cisco Adaptive Security Appliances if they were running a vulnerable release of Cisco ASA Software
and had SNMP configured. From 9.14.0 Prior to 9.14.4.13
From 9.15.0 Prior to 9.16.3.15
From 9.16.3.16 Prior to 9.16.4.0
From 9.17.0 Prior to 9.17.1.20
From 9.18.0 Prior to 9.18.1.3
From 9.18.1.4 Prior to 9.18.2.0
Note: Potential detection as cannot confirm SNMP is Enabled or not.

QID Detection Logic (Authenticated):
The check matches Cisco ASA OS version retrieved via Unix Auth using version command and checking for snmp server using show running-config snmp-server command.

A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition

  • CVSS V3 rated as High - 6.5 severity.
  • CVSS V2 rated as High - 6.8 severity.
  • Solution

    Customers are advised to refer to cisco-sa-asaftd-snmp-dos-qsqBNM6x for more information.

    CVEs related to QID 317273

    Software Advisories
    Advisory ID Software Component Link
    cisco-sa-asaftd-snmp-dos-qsqBNM6x URL Logo tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-snmp-dos-qsqBNM6x