Description
A vulnerability in the EIGRP implementation in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, adjacent attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition.

This vulnerability is due to improper resource management when handling EIGRP update messages. An attacker could exploit this vulnerability by sending crafted EIGRP updates at a high rate to an affected device. A successful exploit could allow the attacker to trigger a memory leak that will eventually cause the affected device to reload unexpectedly.
Published: 2026-09-16
Score: 7.4 High
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service via device reload
Action: Apply Patch
AI Analysis

Impact

A flaw in the EIGRP implementation on Cisco Secure Firewall Adaptive Security Appliance and Threat Defense software allows an unauthenticated attacker on an adjacent network to send crafted EIGRP updates at high rate, triggering a memory leak that eventually forces the device to reload, resulting in a denial of service. The weakness is a memory management issue (CWE-401).

Affected Systems

Vulnerable devices include Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software. The issue can be exploited by any adjacent attacker without authentication, regardless of the device’s configuration or other security controls.

Risk and Exploitability

The CVSS v3 score of 7.4 indicates a high impact failure, but the EPSS score of less than 1% and absence from the CISA KEV list suggest low to moderate current exploitation likelihood. The attack vector is network-based from a neighbor; an attacker only needs to deliver EIGRP update packets. Given the low exploitation probability, the risk is moderate, but immediate patching is recommended to prevent a potential do‑of‑service event.

Generated by OpenCVE AI on September 17, 2026 at 20:38 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade to the latest Cisco firmware release that resolves the EIGRP memory‑leak vulnerability.
  • If an upgrade is not immediately possible, disable the EIGRP protocol on the device to eliminate the attack surface.
  • Apply rate‑limiting or filtering to EIGRP update traffic from adjacent devices to reduce the frequency of updates until a patch is applied.

Generated by OpenCVE AI on September 17, 2026 at 20:38 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 19 Sep 2026 23:00:00 +0000

Type Values Removed Values Added
First Time appeared Cisco
Cisco adaptive Security Appliance Software
Cisco cisco Secure Firewall Threat Defense (ftd) Software
Vendors & Products Cisco
Cisco adaptive Security Appliance Software
Cisco cisco Secure Firewall Threat Defense (ftd) Software

Thu, 17 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 16 Sep 2026 20:30:00 +0000

Type Values Removed Values Added
Description A vulnerability in the EIGRP implementation in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, adjacent attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to improper resource management when handling EIGRP update messages. An attacker could exploit this vulnerability by sending crafted EIGRP updates at a high rate to an affected device. A successful exploit could allow the attacker to trigger a memory leak that will eventually cause the affected device to reload unexpectedly.
Title Cisco Secure Adaptive Security Appliance Software and Secure Firewall Threat Defense Software EIGRP Denial of Service Vulnerability
Weaknesses CWE-401
References
Metrics cvssV3_1

{'score': 7.4, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H'}


Subscriptions

Cisco Adaptive Security Appliance Software Cisco Secure Firewall Threat Defense (ftd) Software
cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2026-09-18T19:08:55.420Z

Reserved: 2025-10-08T11:59:15.398Z

Link: CVE-2026-20222

cve-icon Vulnrichment

Updated: 2026-09-17T14:52:48.097Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-16T21:17:07.910

Modified: 2026-09-18T13:28:28.567

Link: CVE-2026-20222

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-19T22:31:24Z

Weaknesses
  • CWE-401

    Missing Release of Memory after Effective Lifetime