Cisco Secure Firewall Adaptive Security Appliance および Secure Firewall Threat Defense Software for Secure Firewall 3100 and 4200 Series DTLS Denial of Service Vulnerability
Cisco Secure Firewall Adaptive Security Appliance (ASA) Software および Cisco Secure Firewall Threat Defense (FTD) Software の Datagram TLS (DTLS) メッセージ処理における脆弱性により、Cisco Secure Firewall 3100 Series および 4200 Series デバイスで、認証されていないリモートの攻撃者が影響を受けるデバイスでサービス拒否 (DoS) 状態を引き起こす可能性があります。この脆弱性は、特定の DTLS メッセージを処理する際の不適切なリソース管理によるものです。攻撃者は、細工された DTLS トラフィックのストリームを影響を受けるデバイスに送信することで、この脆弱性を悪用する可能性があります。悪用に成功すると、攻撃者はデバイスを再ロードさせ、DoS 状態を引き起こす可能性があります。Cisco は、この脆弱性に対処するソフトウェアアップデートをリリースしました。この脆弱性に対処する回避策があります。この勧告は、次のリンクで入手できます: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-dtls-dos-Kp57HkyOこの勧告は、一連の勧告の一部です。勧告の完全なリストとそのリンクについては、Cisco Advance Notification for Publication of September 16, 2026, Security Advisories を参照してください。さらに、Cisco Secure Firewall 製品の改善と修正に関する詳細なドキュメントについては、Cisco Secure Firewall Adaptive Security Appliance Software, Secure Firewall Threat Defense Software, and Secure Firewall Management Center Software Hardening Release: September 2026 を参照してください。セキュリティ影響度評価: 高CVE: CVE-2026-20250