CVE-2024-20508 - CVE House
Back to Database
Status published Medium CVE-2024-20508

Cisco UTD Snort IPS Engine Software for Cisco IOS XE Software Security Policy Bypass and Denial of Service Vulnerability

Vulnerability Description

A vulnerability in Cisco Unified Threat Defense (UTD) Snort Intrusion Prevention System (IPS) Engine for Cisco IOS XE Software could allow an unauthenticated, remote attacker to bypass configured security policies or cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient validation of HTTP requests when they are processed by Cisco UTD Snort IPS Engine. An attacker could exploit this vulnerability by sending a crafted HTTP request through an affected device. A successful exploit could allow the attacker to trigger a reload of the Snort process. If the action in case of Cisco UTD Snort IPS Engine failure is set to the default, fail-open, successful exploitation of this vulnerability could allow the attacker to bypass configured security policies. If the action in case of Cisco UTD Snort IPS Engine failure is set to fail-close, successful exploitation of this vulnerability could cause traffic that is configured to be inspected by Cisco UTD Snort IPS Engine to be dropped.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-20508

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Cisco UTD SNORT IPS Engine Software
Vulnerable Versions:
17.12.1a, 17.12.2, 17.13.1a, 17.12.3, 17.12.3a, 17.15.1a, 17.9.5a, 17.6.1a, 17.8.1a, 17.6.2, 17.7.2, 17.12.4, 17.14.1a, 17.11.1a, 17.7.1a, 17.6.6

Timeline

Official Publish: September 25th, 2024
Last Modified: November 12th, 2024
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N

Weaknesses (CWE)