We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-20342

Cisco Firepower Threat Defense Software Rate Filter Bypass Vulnerability



Description

Multiple Cisco products are affected by a vulnerability in the rate filtering feature of the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured rate limiting filter.  This vulnerability is due to an incorrect connection count comparison. An attacker could exploit this vulnerability by sending traffic through an affected device at a rate that exceeds a configured rate filter. A successful exploit could allow the attacker to successfully bypass the rate filter. This could allow unintended traffic to enter the network protected by the affected device.

Reserved 2023-11-08 | Published 2024-10-23 | Updated 2025-01-13 | Assigner cisco


MEDIUM: 5.8CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L

Problem types

Comparison Using Wrong Factors

Product status

Default status
unknown

7.0.0
affected

7.0.0.1
affected

7.0.1
affected

7.1.0
affected

7.0.1.1
affected

7.1.0.1
affected

7.0.2
affected

7.2.0
affected

7.0.2.1
affected

7.0.3
affected

7.1.0.2
affected

7.2.0.1
affected

7.0.4
affected

7.2.1
affected

7.0.5
affected

7.3.0
affected

7.2.2
affected

7.2.3
affected

7.3.1
affected

7.1.0.3
affected

7.2.4
affected

7.0.6
affected

7.2.5
affected

7.2.4.1
affected

7.3.1.1
affected

7.4.0
affected

7.0.6.1
affected

7.2.5.1
affected

7.4.1
affected

7.4.1.1
affected

7.2.5.2
affected

7.3.1.2
affected

References

sec.cloudapps.cisco.com/...cisco-sa-snort-rf-bypass-OY8f3pnM (cisco-sa-snort-rf-bypass-OY8f3pnM)

cve.org (CVE-2024-20342)

nvd.nist.gov (CVE-2024-20342)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2024-20342

Support options

Helpdesk Chat, Email, Knowledgebase