CVE-2026-20005 is a denial-of-service vulnerability affecting multiple Cisco products utilizing the Snort 3 Detection Engine. An unauthenticated, remote attacker can exploit incomplete SSL handshake packet parsing to force the engine to restart, interrupting packet inspection. With a CVSS score of 5.8 (Medium), this vulnerability is easily exploitable over the network with low attack complexity, leading to a denial of service. There is currently no evidence of active exploitation, public exploit code, or significant community discussion beyond a single mention and one media article from Cisco.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Cisco | Cisco Cyber Vision | 3.0.0, 3.0.1, 3.0.2, 3.0.3, 3.0.4, 3.0.5, 3.0.6, 3.1.0, 3.1.1, 3.1.2, 3.2.0, 3.2.1, 3.2.2, 3.2.3, 3.2.4, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.1.0, 4.1.1, 4.1.2, 4.1.3, 4.1.4, 4.1.5, 4.1.6, 4.1.7, 4.2.0, 4.2.1, 4.2.2, 4.2.3, 4.2.4, 4.2.6, 4.3.0, 4.3.1, 4.3.2, 4.3.3, 4.4.0, 4.4.1, 4.4.2, 4.4.3, 5.0.0, 5.0.1, 5.0.2, 5.1.1, 5.1.2, 5.1.3, 5.2.0, 5.2.1, 5.3.0, 5.3.1, 5.3.2CNA affected | |
| Cisco | Cisco Secure Firewall Threat Defense (FTD) Software | 7.6.0, 7.6.1, 7.6.2, 7.6.2.1, 7.7.0, 7.7.10, 7.7.10.1CNA affected | |
| Cisco | Cisco UTD SNORT IPS Engine Software | 17.10.1a, 17.11.1a, 17.12.1a, 17.12.2, 17.12.3, 17.12.4, 17.12.4a, 17.12.4b, 17.12.5, 17.12.5a, 17.12.5b, 17.12.5c, 17.12.5d, 17.12.6, 17.13.1a, 17.14.1a, 17.15.1a, 17.15.2a, 17.15.2c, 17.15.3, 17.15.3a, 17.15.4, 17.15.4c, 17.16.1a, 17.17.1, 17.18.1a, 17.18.2, 17.2.1r, 17.3.1a, 17.3.2, 17.3.3, 17.3.4a, 17.3.5, 17.3.6, 17.3.7, 17.3.8, 17.4.1a, 17.4.1b, 17.4.2, 17.5.1a, 17.6.1a, 17.6.2, 17.6.3a, 17.6.4, 17.6.5, 17.6.6, 17.6.7, 17.6.8a, 17.7.1a, 17.7.2, 17.8.1a, 17.9.1a, 17.9.2a, 17.9.3a, 17.9.4, 17.9.5a, 17.9.5e, 17.9.5f, 17.9.6, 17.9.7a, 17.9.7b, 17.9.8CNA affected |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.