Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to cause one of the detection engine processes to run out of memory and thus slow down traffic processing. The vulnerability is due to improper handling of traffic when the Secure Sockets Layer (SSL) inspection policy is enabled. An attacker could exploit this vulnerability by sending malicious traffic through an affected device. An exploit could allow the attacker to increase the resource consumption of a single instance of the Snort detection engine on an affected device. This will lead to performance degradation and eventually the restart of the affected Snort process. Cisco Bug IDs: CSCvi09219, CSCvi29845.
CVSS Information
N/A
Vulnerability Type
资源管理错误
Vulnerability Title
Cisco Firepower System Software检测引擎资源管理错误漏洞
Vulnerability Description
Cisco Firepower System Software是美国思科(Cisco)公司的一款下一代防火墙产品(NGFW)。 Cisco Firepower System Software中的检测引擎存在资源管理错误漏洞,该漏洞源于在安全套接层检测策略打开时,程序没有正确的处理流量。远程攻击者可通过发送恶意的流量利用该漏洞造成检测引擎进程耗尽内存,从而降低流量的处理速度。
CVSS Information
N/A
Vulnerability Type
N/A