CVE-2026-20026
published 2026-01-07CVE-2026-20026: Multiple Cisco products are affected by a vulnerability in the processing of DCE/RPC requests that could allow an unauthenticated, remote attacker to cause the…
PriorityP434medium5.8CVSS 3.1
AVNACLPRNUINSCCNINAL
EPSS
0.63%
46.3th percentile
Multiple Cisco products are affected by a vulnerability in the processing of DCE/RPC requests that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to leak sensitive information or to restart, resulting in an interruption of packet inspection.
This vulnerability is due to an error in buffer handling logic when processing DCE/RPC requests, which can result in a buffer use-after-free read. An attacker could exploit this vulnerability by sending a large number of DCE/RPC requests through an established connection that is inspected by Snort 3. A successful exploit could allow the attacker to unexpectedly restart the Snort 3 Detection Engine, which could cause a denial of service (DoS).
Affected
161 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
| cisco | cisco_secure_firewall_threat_defense_software | — | — |
CVSS provenance
nvdv3.15.8MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L
vendor_cisco5.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Multiple Cisco Products Snort 3 Distributed Computing Environment/Remote Procedure Call Vulnerabilities
vendor_cisco·2026-01-07·CVSS 5.8
CVE-2026-20026 [MEDIUM] CWE-200 Multiple Cisco Products Snort 3 Distributed Computing Environment/Remote Procedure Call Vulnerabilities
Multiple Cisco Products Snort 3 Distributed Computing Environment/Remote Procedure Call Vulnerabilities
Multiple Cisco products are affected by vulnerabilities in the processing of Distributed Computing Environment Remote Procedure Call (DCE/RPC) requests that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to leak sensitive information or to restart, which would result in an interruption of packet inspection.
For more information about these vulnerabilities, see the Details section of this advisory.
Cisco has released software updates that address these vulnerabilities. There are workarounds that address these vulnerabilities.
This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisor
Cisco
Multiple Cisco Products Snort 3 Distributed Computing Environment/Remote Procedure Call Vulnerabilities
vendor_cisco·CVSS 3.1
CVE-2026-20026 Multiple Cisco Products Snort 3 Distributed Computing Environment/Remote Procedure Call Vulnerabilities
CVE-2026-20026: Multiple Cisco Products Snort 3 Distributed Computing Environment/Remote Procedure Call Vulnerabilities
Multiple Cisco products are affected by vulnerabilities in the processing of Distributed Computing Environment Remote Procedure Call (DCE/RPC) requests that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to leak sensitive information or to restart, which would result in an interruption of packet inspection. For more information about these vulnerabilities, see the
CVSS: 3.1
CWE: CWE-200, CWE-415, CWE-200, CWE-415
Bug IDs: CSCwq75339, CSCwq75359, CSCwr21376, CSCwq75339, CSCwq75359
GHSA
GHSA-xc37-chcm-mxpf: Multiple Cisco products are affected by a vulnerability in the processing of DCE/RPC requests that could allow an unauthenticated, remote attacker to
ghsa_unreviewed·2026-01-07
CVE-2026-20026 [MEDIUM] CWE-415 GHSA-xc37-chcm-mxpf: Multiple Cisco products are affected by a vulnerability in the processing of DCE/RPC requests that could allow an unauthenticated, remote attacker to
Multiple Cisco products are affected by a vulnerability in the processing of DCE/RPC requests that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to leak sensitive information or to restart, resulting in an interruption of packet inspection.
This vulnerability is due to an error in buffer handling logic when processing DCE/RPC requests, which can result in a buffer use-after-free read. An attacker could exploit this vulnerability by sending a large number of DCE/RPC requests through an established connection that is inspected by Snort 3. A successful exploit could allow the attacker to unexpectedly restart the Snort 3 Detection Engine, which could cause a denial of service (DoS).
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-01-07
Published