CVE-2018-0230 is a denial-of-service vulnerability affecting Cisco Firepower Threat Defense (FTD) Software on Firepower 2100 Series Security Appliances. It stems from improper validation of reassembled IPv4 and IPv6 packets, allowing an unauthenticated, remote attacker to send malicious fragmented packets. This can cause Snort processes to consume 100% CPU, leading to a complete traffic stoppage and a DoS condition requiring manual device reload. Rated 8.6 HIGH on CVSS, this vulnerability has a network attack vector and low attack complexity, with no user interaction required. The primary impact is high availability loss (DoS). There is no evidence of active exploitation, nor are there publicly available exploit codes in Metasploit or ExploitDB. Community discussion and media coverage for this CVE are minimal, aligning with typical trends for most vulnerabilities.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
6.2.1CPE matchmatch criteria | cpe:2.3:a:cisco:firepower_threat_defense:6.2.1:*:*:*:*:*:*:* | ||
6.2.2CPE matchmatch criteria | cpe:2.3:a:cisco:firepower_threat_defense:6.2.2:*:*:*:*:*:*:* | ||
9.8\(2\)CPE matchmatch criteria | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8\(2\):*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.