A vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software could allow an unauthenticated, adjacent attacker to cause an affected device to reload unexpectedly, resulting in a DoS condition when OSPF canonicalization debug is enabled by using the command debug ip ospf canon. This vulnerability is due to insufficient input validation when processing OSPF LSU packets. An attacker could exploit this vulnerability by sending crafted unauthenticated OSPF packets. A successful exploit could allow the attacker to write to memory outside of the packet data, causing the device to reload, resulting in a DoS condition.
The product performs pointer arithmetic on a valid pointer, but it uses an offset that can point outside of the intended range of valid memory locations for the resulting pointer.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Adaptive_security_appliance_software | Cisco | 9.12.1 (including) | 9.12.1 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.1.2 (including) | 9.12.1.2 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.1.3 (including) | 9.12.1.3 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.2 (including) | 9.12.2 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.2.1 (including) | 9.12.2.1 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.2.4 (including) | 9.12.2.4 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.2.5 (including) | 9.12.2.5 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.2.9 (including) | 9.12.2.9 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.3 (including) | 9.12.3 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.3.2 (including) | 9.12.3.2 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.3.7 (including) | 9.12.3.7 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.3.9 (including) | 9.12.3.9 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.3.12 (including) | 9.12.3.12 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4 (including) | 9.12.4 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.2 (including) | 9.12.4.2 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.4 (including) | 9.12.4.4 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.7 (including) | 9.12.4.7 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.8 (including) | 9.12.4.8 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.10 (including) | 9.12.4.10 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.13 (including) | 9.12.4.13 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.18 (including) | 9.12.4.18 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.24 (including) | 9.12.4.24 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.26 (including) | 9.12.4.26 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.29 (including) | 9.12.4.29 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.30 (including) | 9.12.4.30 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.35 (including) | 9.12.4.35 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.37 (including) | 9.12.4.37 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.38 (including) | 9.12.4.38 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.39 (including) | 9.12.4.39 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.40 (including) | 9.12.4.40 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.41 (including) | 9.12.4.41 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.47 (including) | 9.12.4.47 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.48 (including) | 9.12.4.48 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.50 (including) | 9.12.4.50 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.52 (including) | 9.12.4.52 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.54 (including) | 9.12.4.54 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.55 (including) | 9.12.4.55 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.56 (including) | 9.12.4.56 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.58 (including) | 9.12.4.58 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.62 (including) | 9.12.4.62 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.65 (including) | 9.12.4.65 (including) |
| Adaptive_security_appliance_software | Cisco | 9.12.4.67 (including) | 9.12.4.67 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.1 (including) | 9.16.1 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.1.28 (including) | 9.16.1.28 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.2 (including) | 9.16.2 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.2.3 (including) | 9.16.2.3 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.2.7 (including) | 9.16.2.7 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.2.11 (including) | 9.16.2.11 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.2.13 (including) | 9.16.2.13 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.2.14 (including) | 9.16.2.14 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.3 (including) | 9.16.3 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.3.3 (including) | 9.16.3.3 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.3.14 (including) | 9.16.3.14 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.3.15 (including) | 9.16.3.15 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.3.19 (including) | 9.16.3.19 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.3.23 (including) | 9.16.3.23 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4 (including) | 9.16.4 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.9 (including) | 9.16.4.9 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.14 (including) | 9.16.4.14 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.19 (including) | 9.16.4.19 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.27 (including) | 9.16.4.27 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.38 (including) | 9.16.4.38 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.39 (including) | 9.16.4.39 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.42 (including) | 9.16.4.42 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.48 (including) | 9.16.4.48 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.55 (including) | 9.16.4.55 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.57 (including) | 9.16.4.57 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.61 (including) | 9.16.4.61 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.62 (including) | 9.16.4.62 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.67 (including) | 9.16.4.67 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.70 (including) | 9.16.4.70 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.71 (including) | 9.16.4.71 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.76 (including) | 9.16.4.76 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.82 (including) | 9.16.4.82 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.84 (including) | 9.16.4.84 (including) |
| Adaptive_security_appliance_software | Cisco | 9.16.4.85 (including) | 9.16.4.85 (including) |
| Adaptive_security_appliance_software | Cisco | 9.17.1 (including) | 9.17.1 (including) |
| Adaptive_security_appliance_software | Cisco | 9.17.1.7 (including) | 9.17.1.7 (including) |
| Adaptive_security_appliance_software | Cisco | 9.17.1.9 (including) | 9.17.1.9 (including) |
| Adaptive_security_appliance_software | Cisco | 9.17.1.10 (including) | 9.17.1.10 (including) |
| Adaptive_security_appliance_software | Cisco | 9.17.1.11 (including) | 9.17.1.11 (including) |
| Adaptive_security_appliance_software | Cisco | 9.17.1.13 (including) | 9.17.1.13 (including) |
| Adaptive_security_appliance_software | Cisco | 9.17.1.15 (including) | 9.17.1.15 (including) |
| Adaptive_security_appliance_software | Cisco | 9.17.1.20 (including) | 9.17.1.20 (including) |
| Adaptive_security_appliance_software | Cisco | 9.17.1.30 (including) | 9.17.1.30 (including) |
| Adaptive_security_appliance_software | Cisco | 9.17.1.33 (including) | 9.17.1.33 (including) |
| Adaptive_security_appliance_software | Cisco | 9.17.1.39 (including) | 9.17.1.39 (including) |
| Adaptive_security_appliance_software | Cisco | 9.17.1.45 (including) | 9.17.1.45 (including) |
| Adaptive_security_appliance_software | Cisco | 9.17.1.46 (including) | 9.17.1.46 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.1 (including) | 9.18.1 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.1.3 (including) | 9.18.1.3 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.2 (including) | 9.18.2 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.2.5 (including) | 9.18.2.5 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.2.7 (including) | 9.18.2.7 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.2.8 (including) | 9.18.2.8 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.3 (including) | 9.18.3 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.3.39 (including) | 9.18.3.39 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.3.46 (including) | 9.18.3.46 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.3.53 (including) | 9.18.3.53 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.3.55 (including) | 9.18.3.55 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.3.56 (including) | 9.18.3.56 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.4 (including) | 9.18.4 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.4.5 (including) | 9.18.4.5 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.4.8 (including) | 9.18.4.8 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.4.22 (including) | 9.18.4.22 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.4.24 (including) | 9.18.4.24 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.4.29 (including) | 9.18.4.29 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.4.34 (including) | 9.18.4.34 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.4.40 (including) | 9.18.4.40 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.4.47 (including) | 9.18.4.47 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.4.50 (including) | 9.18.4.50 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.4.52 (including) | 9.18.4.52 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.4.53 (including) | 9.18.4.53 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.4.57 (including) | 9.18.4.57 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.4.66 (including) | 9.18.4.66 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.4.67 (including) | 9.18.4.67 (including) |
| Adaptive_security_appliance_software | Cisco | 9.18.4.68 (including) | 9.18.4.68 (including) |
| Adaptive_security_appliance_software | Cisco | 9.19.1 (including) | 9.19.1 (including) |
| Adaptive_security_appliance_software | Cisco | 9.19.1.5 (including) | 9.19.1.5 (including) |
| Adaptive_security_appliance_software | Cisco | 9.19.1.9 (including) | 9.19.1.9 (including) |
| Adaptive_security_appliance_software | Cisco | 9.19.1.12 (including) | 9.19.1.12 (including) |
| Adaptive_security_appliance_software | Cisco | 9.19.1.18 (including) | 9.19.1.18 (including) |
| Adaptive_security_appliance_software | Cisco | 9.19.1.22 (including) | 9.19.1.22 (including) |
| Adaptive_security_appliance_software | Cisco | 9.19.1.24 (including) | 9.19.1.24 (including) |
| Adaptive_security_appliance_software | Cisco | 9.19.1.27 (including) | 9.19.1.27 (including) |
| Adaptive_security_appliance_software | Cisco | 9.19.1.28 (including) | 9.19.1.28 (including) |
| Adaptive_security_appliance_software | Cisco | 9.19.1.31 (including) | 9.19.1.31 (including) |
| Adaptive_security_appliance_software | Cisco | 9.19.1.37 (including) | 9.19.1.37 (including) |
| Adaptive_security_appliance_software | Cisco | 9.19.1.38 (including) | 9.19.1.38 (including) |
| Adaptive_security_appliance_software | Cisco | 9.19.1.42 (including) | 9.19.1.42 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.1 (including) | 9.20.1 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.1.5 (including) | 9.20.1.5 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.2 (including) | 9.20.2 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.2.10 (including) | 9.20.2.10 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.2.21 (including) | 9.20.2.21 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.2.22 (including) | 9.20.2.22 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.3 (including) | 9.20.3 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.3.4 (including) | 9.20.3.4 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.3.7 (including) | 9.20.3.7 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.3.9 (including) | 9.20.3.9 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.3.10 (including) | 9.20.3.10 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.3.13 (including) | 9.20.3.13 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.3.16 (including) | 9.20.3.16 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.3.20 (including) | 9.20.3.20 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.4 (including) | 9.20.4 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.4.7 (including) | 9.20.4.7 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.4.10 (including) | 9.20.4.10 (including) |
| Adaptive_security_appliance_software | Cisco | 9.20.4.14 (including) | 9.20.4.14 (including) |
| Adaptive_security_appliance_software | Cisco | 9.22.1.1 (including) | 9.22.1.1 (including) |
| Adaptive_security_appliance_software | Cisco | 9.22.1.2 (including) | 9.22.1.2 (including) |
| Adaptive_security_appliance_software | Cisco | 9.22.1.3 (including) | 9.22.1.3 (including) |
| Adaptive_security_appliance_software | Cisco | 9.22.1.6 (including) | 9.22.1.6 (including) |
| Adaptive_security_appliance_software | Cisco | 9.22.2 (including) | 9.22.2 (including) |
| Adaptive_security_appliance_software | Cisco | 9.22.2.4 (including) | 9.22.2.4 (including) |
| Adaptive_security_appliance_software | Cisco | 9.22.2.9 (including) | 9.22.2.9 (including) |
| Adaptive_security_appliance_software | Cisco | 9.22.2.13 (including) | 9.22.2.13 (including) |
| Adaptive_security_appliance_software | Cisco | 9.22.2.14 (including) | 9.22.2.14 (including) |
| Adaptive_security_appliance_software | Cisco | 9.23.1 (including) | 9.23.1 (including) |
| Adaptive_security_appliance_software | Cisco | 9.23.1.3 (including) | 9.23.1.3 (including) |
| Adaptive_security_appliance_software | Cisco | 9.23.1.7 (including) | 9.23.1.7 (including) |
| Adaptive_security_appliance_software | Cisco | 9.23.1.13 (including) | 9.23.1.13 (including) |
| Adaptive_security_appliance_software | Cisco | 9.23.1.19 (including) | 9.23.1.19 (including) |
| Adaptive_security_appliance_software | Cisco | 9.23.1.22 (including) | 9.23.1.22 (including) |
While a pointer can contain a reference to any arbitrary memory location, a program typically only intends to use the pointer to access limited portions of memory, such as contiguous memory used to access an individual array. Programs may use offsets in order to access fields or sub-elements stored within structured data. The offset might be out-of-range if it comes from an untrusted source, is the result of an incorrect calculation, or occurs because of another error. If an attacker can control or influence the offset so that it points outside of the intended boundaries of the structure, then the attacker may be able to read or write to memory locations that are used elsewhere in the product. As a result, the attack might change the state of the product as accessed through program variables, cause a crash or instable behavior, and possibly lead to code execution.