Cisco Firepower System Software 拒绝服务漏洞

  • A+
所属分类:cnnvd_vulns

漏洞信息详情

Cisco Firepower System Software 拒绝服务漏洞

  • CNNVD编号:CNNVD-201610-562
  • <!--

  • 危害等级: 中危-->
  • 危害等级: 中危
    Cisco Firepower System Software 拒绝服务漏洞

  • CVE编号:
    CVE-2016-6439

  • 漏洞类型:

    资源管理错误

  • 发布时间:

    2016-10-25

  • 威胁类型:

    远程

  • 更新时间:

    2016-11-15

  • 厂        商:

    cisco
  • 漏洞来源:
    Cisco

漏洞简介

Cisco Firepower System Software是美国思科(Cisco)公司的一款下一代防火墙产品(NGFW)。

Cisco Firepower System Software的侦察引擎重组HTTP数据包存在拒绝服务漏洞,该漏洞源于Snort进程意外重启。远程攻击者可通过发送特制的HTTP分组数据流到目标系统的侦察引擎利用该漏洞造成拒绝服务。运行Cisco Firepower System软件5.4.1.5版本、6.0和6.0.0.1版本的以下产品受到影响:Cisco Adaptive Security Appliance 5500-X Series with FirePOWER Services,Advanced Malware Protection for Networks,7000 Series Appliances,Advanced Malware Protection for Networks, 8000 Series Appliances,Firepower 4100 Series Security Appliances,FirePOWER 7000 Series Appliances,FirePOWER 8000 Series Appliances,Firepower 9300 Series Security Appliances,FirePOWER Threat Defense for Integrated Services Routers,Sourcefire 3D System Appliances,Virtual Next-Generation Intrusion Prevention System for VMware。

漏洞公告

目前厂商已经发布了升级补丁以修复此安全问题,补丁获取链接:

https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161019-fpsnort

参考网址

来源:tools.cisco.com

链接:https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161019-fpsnort

来源:BID

链接:http://www.securityfocus.com/bid/93787

受影响实体

  • Cisco Firepower_management_center:5.4.1.1  

    <!--

    2000-1-1

    -->

  • Cisco Firepower_management_center:5.3.0.4  

    <!--

    2000-1-1

    -->

  • Cisco Firepower_management_center:5.4.0  

    <!--

    2000-1-1

    -->

  • Cisco Firepower_management_center:6.0.0.1  

    <!--

    2000-1-1

    -->

  • Cisco Firepower_management_center:6.0.0  

    <!--

    2000-1-1

    -->

补丁

  • Cisco Firepower System Software 拒绝服务漏洞的修复措施

    <!--

    2016-10-25

    -->

  • 我的微信
  • 这是我的微信扫一扫
  • weinxin
  • 我的微信公众号
  • 我的微信公众号扫一扫
  • weinxin

发表评论

:?: :razz: :sad: :evil: :!: :smile: :oops: :grin: :eek: :shock: :???: :cool: :lol: :mad: :twisted: :roll: :wink: :idea: :arrow: :neutral: :cry: :mrgreen: