CVE-2020-3555
published 2020-10-21CVE-2020-3555: A vulnerability in the SIP inspection process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow…
PriorityP342high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
1.68%
74.4th percentile
A vulnerability in the SIP inspection process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a crash and reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to a watchdog timeout and crash during the cleanup of threads that are associated with a SIP connection that is being deleted from the connection list. An attacker could exploit this vulnerability by sending a high rate of crafted SIP traffic through an affected device. A successful exploit could allow the attacker to cause a watchdog timeout and crash, resulting in a crash and reload of the affected device.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | adaptive_security_appliance | < 9.6.4.43 | 9.6.4.43 |
| cisco | adaptive_security_appliance | — | — |
| cisco | adaptive_security_appliance_software | >= 9.10.0 < 9.10.1.43 | 9.10.1.43 |
| cisco | adaptive_security_appliance_software | >= 9.12.0 < 9.12.4.2 | 9.12.4.2 |
| cisco | adaptive_security_appliance_software | >= 9.13.0 < 9.13.1.13 | 9.13.1.13 |
| cisco | adaptive_security_appliance_software | >= 9.14.0 < 9.14.1.19 | 9.14.1.19 |
| cisco | adaptive_security_appliance_software | >= 9.7.0 < 9.8.4.24 | 9.8.4.24 |
| cisco | adaptive_security_appliance_software | >= 9.9.0 < 9.9.2.80 | 9.9.2.80 |
| cisco | cisco_adaptive_security_appliance_software | — | — |
| cisco | firepower_threat_defense | <= 6.2.2 | — |
| cisco | firepower_threat_defense | — | — |
| cisco | firepower_threat_defense | >= 6.3.0 < 6.3.0.6 | 6.3.0.6 |
| cisco | firepower_threat_defense | >= 6.4.0 < 6.4.0.10 | 6.4.0.10 |
| cisco | firepower_threat_defense | >= 6.5.0 < 6.5.0.5 | 6.5.0.5 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
vendor_cisco6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software SIP Denial of Service Vulnerability
vendor_cisco·2020-10-21·CVSS 6.8
CVE-2020-3555 [MEDIUM] CWE-404 Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software SIP Denial of Service Vulnerability
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software SIP Denial of Service Vulnerability
Update from October 22nd, 2020: Cisco has become aware of a new Cisco Adaptive Security Appliance vulnerability that could affect the fixed releases recommended for code trains 9.13 and 9.14 in the Fixed Software section of this advisory. See the Cisco Adaptive Security Appliance Software SSL/TLS Denial of Service Vulnerability for additional information.
A vulnerability in the SIP inspection process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a crash and reload of an affected device, resulting in a denial of service (DoS) condition.
The vulnerability is due
Cisco
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software SIP Denial of Service Vulnerability
vendor_cisco·CVSS 3.1
CVE-2020-3555 Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software SIP Denial of Service Vulnerability
CVE-2020-3555: Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software SIP Denial of Service Vulnerability
Update from October 22nd, 2020 : Cisco has become aware of a new Cisco Adaptive Security Appliance vulnerability that could affect the fixed releases recommended for code trains 9.13 and 9.14 in the Fixed Software section of this advisory. See the Cisco Adaptive Security Appliance Software SSL/TLS Denial of Service Vulnerability for additional information. A vulnerability in the SIP inspection process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a crash and reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerab
GHSA
GHSA-r7x6-g4f2-fq99: A vulnerability in the SIP inspection process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software co
ghsa_unreviewed·2022-05-24
CVE-2020-3555 [HIGH] CWE-404 GHSA-r7x6-g4f2-fq99: A vulnerability in the SIP inspection process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software co
A vulnerability in the SIP inspection process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a crash and reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to a watchdog timeout and crash during the cleanup of threads that are associated with a SIP connection that is being deleted from the connection list. An attacker could exploit this vulnerability by sending a high rate of crafted SIP traffic through an affected device. A successful exploit could allow the attacker to cause a watchdog timeout and crash, resulting in a crash and reload of the affected device.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-12425 Mozilla: Out of bound read in Date.parse()
bugzilla·2020-08-26·CVSS 6.5
CVE-2020-12425 [MEDIUM] CVE-2020-12425 Mozilla: Out of bound read in Date.parse()
CVE-2020-12425 Mozilla: Out of bound read in Date.parse()
Due to confusion processing a hyphen character in Date.parse(), a one-byte out of bounds read could have occurred, leading to potential information disclosure.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2020-24/#CVE-2020-12425
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Bruno Keith
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2020-12425
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions
Via RHSA-2020:3555 https://access.redhat.com/errata/RHSA-2020:3555
---
This issue has been addressed in the
Bugzilla
CVE-2020-12422 Mozilla: Integer overflow in nsJPEGEncoder::emptyOutputBuffer
bugzilla·2020-08-26·CVSS 8.8
CVE-2020-12422 [HIGH] CVE-2020-12422 Mozilla: Integer overflow in nsJPEGEncoder::emptyOutputBuffer
CVE-2020-12422 Mozilla: Integer overflow in nsJPEGEncoder::emptyOutputBuffer
In non-standard configurations, a JPEG image created by JavaScript could have caused an internal variable to overflow, resulting in an out of bounds write, memory corruption, and a potentially exploitable crash.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2020-24/#CVE-2020-12422
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Ronald Crane
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2020-12422
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions
Via RHSA-2020:3555 https://access.red
Bugzilla
CVE-2020-15648 Mozilla: X-Frame-Options bypass using object or embed tags
bugzilla·2020-08-26·CVSS 6.5
CVE-2020-15648 [MEDIUM] CVE-2020-15648 Mozilla: X-Frame-Options bypass using object or embed tags
CVE-2020-15648 Mozilla: X-Frame-Options bypass using object or embed tags
Using object or embed tags, it was possible to frame other websites, even if they disallowed framing using the X-Frame-Options header.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2020-28/#CVE-2020-15648
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Frederik Braun
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2020-15648
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions
Via RHSA-2020:3555 https://access.redhat.com/errata/RHSA-2020:3555
---
This issue has been addressed in the follo
Bugzilla
CVE-2020-15658 Mozilla: Overriding file type when saving to disk
bugzilla·2020-07-29·CVSS 6.5
CVE-2020-15658 [MEDIUM] CVE-2020-15658 Mozilla: Overriding file type when saving to disk
CVE-2020-15658 Mozilla: Overriding file type when saving to disk
The code for downloading files did not properly take care of special characters,
which led to an attacker being able to cut off the file ending at an earlier position, leading to a different file type being downloaded than shown in the dialog.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2020-33/#CVE-2020-15658
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: belden
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2020-15658
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions
Via RHSA-2020:3555 http
2020-10-21
Published