Cisco Releases Security Updates for Multiple Products
Scheduled update addresses one High and one Medium vulnerability
Summary
Scheduled update addresses one High and one Medium vulnerability
Affected platforms
The following platforms are known to be affected:
Threat details
Introduction
Cisco has released two security updates to address one vulnerability rated as High and one rated as medium. The High vulnerability affects Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software and concerns a RSA private key leak. An attacker could exploit this vulnerability to take control of an affected system.
Remediation advice
Affected organisations are encouraged to review the following Cisco Security Advisories and apply the necessary updates.
Remediation steps
| Type | Step |
|---|---|
| Patch |
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software RSA Private Key Leak Vulnerability | cisco-sa-asaftd-rsa-key-leak-Ms7UEfZz https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-rsa-key-leak-Ms7UEfZz |
| Patch |
Cisco Adaptive Security Appliance Software Clientless SSL VPN Client-Side Request Smuggling Vulnerability | cisco-sa-asa-webvpn-LOeKsNmO https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asa-webvpn-LOeKsNmO |
Definitive source of threat updates
CVE Vulnerabilities
Last edited: 11 August 2022 2:41 pm