CVE-2020-3179

HIGH

Cisco Firepower Threat Defense - DoS

Title source: llm
STIX 2.1

Description

A vulnerability in the generic routing encapsulation (GRE) tunnel decapsulation feature of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a memory handling error when GRE over IPv6 traffic is processed. An attacker could exploit this vulnerability by sending crafted GRE over IPv6 packets with either IPv4 or IPv6 payload through an affected device. A successful exploit could allow the attacker to cause the device to crash, resulting in a DoS condition.

References (1)

Core 1
Core References

Scores

CVSS v3 7.5
EPSS 0.0116
EPSS Percentile 78.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-415
Status published
Products (25)
cisco/asa_5505_firmware 9.9\(2\)
cisco/asa_5505_firmware 101.5\(1.26\)
cisco/asa_5510_firmware 9.9\(2\)
cisco/asa_5510_firmware 101.5\(1.26\)
cisco/asa_5512-x_firmware 9.9\(2\)
cisco/asa_5512-x_firmware 101.5\(1.26\)
cisco/asa_5515-x_firmware 9.9\(2\)
cisco/asa_5515-x_firmware 101.5\(1.26\)
cisco/asa_5520_firmware 9.9\(2\)
cisco/asa_5520_firmware 101.5\(1.26\)
... and 15 more
Published May 06, 2020
Tracked Since Feb 18, 2026