#VU17844 Input validation error in Cisco Firewall Threat Defense (FTD) - CVE-2019-1691
Published: February 22, 2019
Cisco Firewall Threat Defense (FTD)
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists in the detection engine due to the incomplete error handling of the SSL or TLS packet header during the connection establishment. A remote attacker can send a specially crafted SSL or TLS packet during the connection handshake and cause the SNORT detection engine to unexpectedly restart, resulting in a partial DoS condition while the detection engine restarts.