Denial of Service Vulnerability in Cisco Secure Firewall Products
CVE-2026-20021
What is CVE-2026-20021?
A vulnerability exists in the OSPF protocol used by Cisco Secure Firewall Adaptive Security Appliance and Threat Defense Software. This flaw arises from inadequate input validation when processing OSPF packets, allowing an adjacent authenticated attacker to send specially crafted packets that can deplete memory resources on the affected device. The successful execution of this attack leads to a denial of service condition, impacting the device's availability and performance.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.12.1
Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.12.1.2
Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.12.1.3
References
CVSS V3.1
Timeline
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved