#VU123662 Input validation error in Cisco Adaptive Security Appliance (ASA) and Cisco Firewall Threat Defense (FTD) - CVE-2026-20025
Published: March 10, 2026
Cisco Adaptive Security Appliance (ASA)
Cisco Firewall Threat Defense (FTD)
Cisco Systems, Inc
Description
The vulnerability allows a remote user to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input when processing OSPF link-state update (LSU) packets. A remote user with OSPF secret key can send specially crafted OSPF LSU packets to the device and perform a denial of service (DoS) attack.