CVE-2016-1369 describes a denial-of-service vulnerability in the Cisco ASA 5585-X FirePOWER Security Services Processor (SSP) module running Cisco ASA with FirePOWER Services versions 5.3.1 through 6.0.0. This flaw stems from misconfigured kernel logging, allowing remote attackers to trigger resource exhaustion, leading to an inspection outage or module outage through a flood of crafted IP traffic. With a CVSSv3 score of 7.5 (High), this vulnerability is easily exploitable over the network with low complexity and no user interaction, resulting in a complete loss of availability. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or KEV catalog inclusion, though it has received limited community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
5.3.1CPE matchmatch criteria | cpe:2.3:a:cisco:asa_with_firepower_services:5.3.1:*:*:*:*:*:*:* | ||
5.3.1.1CPE matchmatch criteria | cpe:2.3:a:cisco:asa_with_firepower_services:5.3.1.1:*:*:*:*:*:*:* | ||
5.4.0CPE matchmatch criteria | cpe:2.3:a:cisco:asa_with_firepower_services:5.4.0:*:*:*:*:*:*:* | ||
5.4.0.1CPE matchmatch criteria | cpe:2.3:a:cisco:asa_with_firepower_services:5.4.0.1:*:*:*:*:*:*:* | ||
5.4.0.2CPE matchmatch criteria | cpe:2.3:a:cisco:asa_with_firepower_services:5.4.0.2:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.