CNNVD-202508-1683 Information

CNNVD ID

CNNVD-202508-1683

CVE-2025-20134

  • CNNVD Published: 2025-08-14

Description (Chinese)

Cisco Secure Firewall Adaptive Security Appliance和Cisco Secure Firewall Threat Defense都是美国思科(Cisco)公司的产品。Cisco Secure Firewall Adaptive Security Appliance是一个企业级防火墙软件。Cisco Secure Firewall Threat Defense是一个集成式防火墙平台。 Cisco Secure Firewall Adaptive Security Appliance和Cisco Secure Firewall Threat Defense存在资源管理错误漏洞,该漏洞源于SSL/TLS证书解析不当,可能导致拒绝服务攻击。

Description (English)

Cisco Security Fairive Security Application and Cisco Security Fairwall Threat Defense are all Cisco products. Cisco Security Firewall Adaptive Security Application is an enterprise-level firewall software. Cisco Security Firewall Threat Defense is an integrated firewall platform. There is a resource management error gap between Cisco Security Fairive Security Application and Cisco Security Fairwall Threat Defense, which stems from the inappropriate resolution of SSL/TLS certificates and may lead to a denial of service attack.

Hazard Level

Medium

Vulnerability Type

资源管理错误

Affected Vendor

思科

Published

2025-08-14

Last Modified

2026-02-24

References

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-ssltls-dos-eHw76vZe https://access.redhat.com/security/cve/cve-2025-20134 https://nvd.nist.gov/vuln/detail/CVE-2025-20134

Patch

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-ssltls-dos-eHw76vZe

Share on: