IT

Tracker / CVE-2026-20015

CVE-2026-20015

Medium 5.8

A vulnerability in the IKEv2 feature of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device that may impact the availability of services to devices elsewhere in the network. This vulnerability is due to a memory leak when parsing IKEv2 packets. An attacker could exploit this vulnerability by sending crafted IKEv2 packets to an affected device. A successful exploit could allow the attacker to exhaust resources, causing a DoS condition that will eventually require the device to be manually reloaded.

Affected products and versions

cisco adaptive_security_appliance_software · 9.18.1 → 9.18.4.71
cisco adaptive_security_appliance_software · 9.19.1 → 9.20.4.10
cisco adaptive_security_appliance_software · 9.22.1.1 → 9.22.2.13
cisco adaptive_security_appliance_software · 9.23.1 → 9.23.1.19
cisco secure_firewall_threat_defense · 7.2.0 → 7.2.11
cisco secure_firewall_threat_defense · 7.3.0 → 7.4.3
cisco secure_firewall_threat_defense · 7.6.0 → 7.6.4
cisco secure_firewall_threat_defense · 7.7.0 → 7.7.11

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References