Stack-based buffer overflow in Cisco Systems, Inc products - CVE-2021-1573
Published: October 28, 2021 / Updated: October 28, 2021
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary error when processing HTTP requests. A remote unauthenticated attacker can send a specially crafted HTTP request to exposed SSL VPN web interface, trigger stack-based buffer overflow and perform a denial of service (DoS) attack.
Affected software
Cisco Firewall Threat Defense (FTD)
Cisco Adaptive Security Appliance (ASA)
How to mitigate CVE-2021-1573
Cisco Adaptive Security Appliance (ASA) - addressed in versions 9.8.4.40, 9.12.4.26, 9.14.3, 9.15.1.17, 9.16.1.28