#VU60660 Resource management error in Cisco AsyncOS for Cisco Email Security Appliance - CVE-2022-20653
Published: February 16, 2022
Cisco AsyncOS for Cisco Email Security Appliance
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper management of internal resources in the DNS-based Authentication of Named Entities (DANE) email verification component when handling DNS name resolution. A remote attacker can send a specially crafted email message to the system and perform a denial of service (DoS) attack.