A vulnerability in DNS over IPv6 packet processing for Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to unexpectedly reload, resulting in a denial of service (DoS) condition. The vulnerability is due to improper length validation of a field in an IPv6 DNS packet. An attacker could exploit this vulnerability by sending a crafted DNS query over IPv6, which traverses the affected device. An exploit could allow the attacker to cause the device to reload, resulting in a DoS condition. This vulnerability is specific to DNS over IPv6 traffic only.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Cisco
Subscribe
|
Adaptive Security Appliance Software
Subscribe
Asa 5505
Subscribe
Asa 5505 Firmware
Subscribe
Asa 5510
Subscribe
Asa 5510 Firmware
Subscribe
Asa 5512-x
Subscribe
Asa 5512-x Firmware
Subscribe
Asa 5515-x
Subscribe
Asa 5515-x Firmware
Subscribe
Asa 5520
Subscribe
Asa 5520 Firmware
Subscribe
Asa 5525-x
Subscribe
Asa 5525-x Firmware
Subscribe
Asa 5540
Subscribe
Asa 5540 Firmware
Subscribe
Asa 5545-x
Subscribe
Asa 5545-x Firmware
Subscribe
Asa 5550
Subscribe
Asa 5550 Firmware
Subscribe
Asa 5555-x
Subscribe
Asa 5555-x Firmware
Subscribe
Asa 5580
Subscribe
Asa 5580 Firmware
Subscribe
Asa 5585-x
Subscribe
Asa 5585-x Firmware
Subscribe
Firepower Threat Defense
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-24462 | A vulnerability in DNS over IPv6 packet processing for Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to unexpectedly reload, resulting in a denial of service (DoS) condition. The vulnerability is due to improper length validation of a field in an IPv6 DNS packet. An attacker could exploit this vulnerability by sending a crafted DNS query over IPv6, which traverses the affected device. An exploit could allow the attacker to cause the device to reload, resulting in a DoS condition. This vulnerability is specific to DNS over IPv6 traffic only. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 15 Nov 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: cisco
Published:
Updated: 2024-11-15T17:25:21.757Z
Reserved: 2019-12-12T00:00:00
Link: CVE-2020-3191
Updated: 2024-08-04T07:24:00.910Z
Status : Modified
Published: 2020-05-06T17:15:12.290
Modified: 2024-11-21T05:30:30.980
Link: CVE-2020-3191
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD