Security Advisory

CVE-2020-3303

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-05-06 16:42:21
Last updated 2024-11-15 17:23:02
Assigner cisco
CVSS score 6.8
State PUBLISHED

Description

A vulnerability in the Internet Key Exchange version 1 (IKEv1) feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to improper management of system memory. An attacker could exploit this vulnerability by sending malicious IKEv1 traffic to an affected device. A successful exploit could allow the attacker to cause a DoS condition on the affected device.