CVE-2020-3555
Cisco Cisco Adaptive Security Appliance (ASA) Software, adaptive security appliance, secure firewall threat defense
A vulnerability in the SIP inspection process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a crash and reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to a watchdog timeout and crash during the cleanup of threads that are associated with a SIP connection that is being deleted from the connection list. An attacker could exploit this vulnerability by sending a high rate of crafted SIP traffic through an affected device. A su...
- CVSS
- 7.5
- EPSS
- 1.68% 75.3% percentile
- CISA KEV
- Not listed
- Published
- 2020.10.22