Improper input validation in Cisco Secure Firewall Management Center (formerly Firepower Management Center, FMC) - CVE-2017-12244
Published: October 5, 2017
Vulnerability details
The weakness exists due to improper input validation of the fields in the IPv6 extension header packet in the detection engine. A remote attacker can send a specially crafted IPv6 packet to the detection engine, trigger high CPU utilization and cause the Snort process to restart.
Successful exploitation of the vulnerability results in denial of service.