Cisco ASA and FTD Denial-of-Service Vulnerability
Cisco — Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD)
- Added to KEV catalog
- 24 October 2024
- Federal remediation due date
- 14 November 2024
- Weakness classification (CWE)
- CWE-772
CISA Description
Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) contain a missing release of resource after effective lifetime vulnerability that could allow an unauthenticated, remote attacker to cause a denial-of-service (DoS) of the RAVPN service.
Required action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Notes
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-bf-dos-vDZhLqrW ; https://nvd.nist.gov/vuln/detail/CVE-2024-20481
More Cisco Vulnerabilities
Cisco Firewall Management Center Authentication Bypass Using an Alternate Path or Channel Vulnerability
Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Heap Inspection Vulnerability
Cisco Secure Firewall Management Center Use of Hard-coded Password Vulnerability
Cisco IOS Cross-Site Request Forgery Vulnerability
Cisco Unified Communications Manager Server-Side Request Forgery (SSRF) Vulnerability
Is this vulnerability present in your environment?
CRS delivers independent VAPT assessments that identify exactly which known-exploited vulnerabilities exist in your network, applications, and infrastructure.
Explore VAPT Services







