CVE-2021-34781
published 2021-10-27CVE-2021-34781: A vulnerability in the processing of SSH connections for multi-instance deployments of Cisco Firepower Threat Defense (FTD) Software could allow an…
PriorityP341high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
1.35%
68.3th percentile
A vulnerability in the processing of SSH connections for multi-instance deployments of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the affected device. This vulnerability is due to a lack of proper error handling when an SSH session fails to be established. An attacker could exploit this vulnerability by sending a high rate of crafted SSH connections to the instance. A successful exploit could allow the attacker to cause resource exhaustion, which causes a DoS condition on the affected device. The device must be manually reloaded to recover.
Affected
22 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_adaptive_security_appliance_software | — | — |
| cisco | firepower_management_center_virtual_appliance | — | — |
| cisco | firepower_management_center_virtual_appliance | — | — |
| cisco | firepower_management_center_virtual_appliance | — | — |
| cisco | firepower_management_center_virtual_appliance | — | — |
| cisco | firepower_management_center_virtual_appliance | — | — |
| cisco | firepower_management_center_virtual_appliance | — | — |
| cisco | firepower_management_center_virtual_appliance | — | — |
| cisco | firepower_management_center_virtual_appliance | — | — |
| cisco | firepower_threat_defense | — | — |
| cisco | firepower_threat_defense | >= 6.3.0 < 6.4.0.13 | 6.4.0.13 |
| cisco | firepower_threat_defense | >= 6.5.0 < 6.6.5 | 6.6.5 |
| cisco | firepower_threat_defense | >= 6.7.0 < 6.7.0.3 | 6.7.0.3 |
| cisco | firepower_threat_defense | >= 7.0.0 < 7.0.1 | 7.0.1 |
| cisco | sourcefire_defense_center | — | — |
| cisco | sourcefire_defense_center | — | — |
| cisco | sourcefire_defense_center | — | — |
| cisco | sourcefire_defense_center | — | — |
| cisco | sourcefire_defense_center | — | — |
| cisco | sourcefire_defense_center | — | — |
| cisco | sourcefire_defense_center | — | — |
| cisco | sourcefire_defense_center | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.07.1HIGHAV:N/AC:M/Au:N/C:N/I:N/A:C
vendor_cisco8.6HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Firepower Threat Defense Software SSH Connections Denial of Service Vulnerability
vendor_cisco·2021-10-27·CVSS 8.6
CVE-2021-34781 [HIGH] CWE-119 Cisco Firepower Threat Defense Software SSH Connections Denial of Service Vulnerability
Cisco Firepower Threat Defense Software SSH Connections Denial of Service Vulnerability
A vulnerability in the processing of SSH connections for multi-instance deployments of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the affected device.
This vulnerability is due to a lack of proper error handling when an SSH session fails to be established. An attacker could exploit this vulnerability by sending a high rate of crafted SSH connections to the instance. A successful exploit could allow the attacker to cause resource exhaustion, which causes a DoS condition on the affected device. The device must be manually reloaded to recover.
Cisco has released software updates that address this vulnerabil
Cisco
Cisco Firepower Threat Defense Software SSH Connections Denial of Service Vulnerability
vendor_cisco·CVSS 3.1
CVE-2021-34781 Cisco Firepower Threat Defense Software SSH Connections Denial of Service Vulnerability
CVE-2021-34781: Cisco Firepower Threat Defense Software SSH Connections Denial of Service Vulnerability
A vulnerability in the processing of SSH connections for multi-instance deployments of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the affected device. This vulnerability is due to a lack of proper error handling when an SSH session fails to be established. An attacker could exploit this vulnerability by sending a high rate of crafted SSH connections to the instance. A successful exploit could allow the attacker to cause resource exhaustion, which causes a DoS condition on the affected device. The device must be manually reloaded to recover. Cisco has released software updates that address t
GHSA
GHSA-cg69-5r4f-47q5: A vulnerability in the processing of SSH connections for multi-instance deployments of Cisco Firepower Threat Defense (FTD) Software could allow an un
ghsa_unreviewed·2022-05-24
CVE-2021-34781 [HIGH] CWE-755 GHSA-cg69-5r4f-47q5: A vulnerability in the processing of SSH connections for multi-instance deployments of Cisco Firepower Threat Defense (FTD) Software could allow an un
A vulnerability in the processing of SSH connections for multi-instance deployments of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the affected device. This vulnerability is due to a lack of proper error handling when an SSH session fails to be established. An attacker could exploit this vulnerability by sending a high rate of crafted SSH connections to the instance. A successful exploit could allow the attacker to cause resource exhaustion, which causes a DoS condition on the affected device. The device must be manually reloaded to recover.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2021-10-27
Published