Rewterz
Rewterz Threat Alert – Kimsuky APT Group – Active IOCs
July 16, 2021
Rewterz
Rewterz Threat Alert – Raccoon Infostealer – Active IOCs
July 16, 2021

Rewterz Threat Advisory – CVE-2021-1422 – Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Vulnerability


Severity

High

Analysis Summary

CVE-2021-1422

Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software are vulnerable to a denial of service, caused by a logic error when the software cryptography module handles specific types of decryption errors. By sending specially-crafted packets over an established IPsec connection, a remote authenticated attacker could exploit this vulnerability to cause the device to crash, and forcing it to reload.

Impact

  • Denial of Service

Affected Vendors

Cisco

Affected Products

  • Cisco Adaptive Security Appliance Software 9.16.1
  • Cisco Firepower Threat Defense Software 7.0.0

Remediation

Refer to for patch, upgrade, or suggested workaround information.

https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asa-ftd-ipsec-dos-TFKQbgWC