#VU99294 Integer underflow in Cisco Secure Client - CVE-2024-20474
Published: October 24, 2024
Cisco Secure Client
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to integer underflow in Internet Key Exchange version 2 (IKEv2) processing. A remote attacker can send a specially crafted request to the affected application, trigger integer underflow and cause a denial of service condition on the target system.