Cisco has issued a warning about a newly discovered vulnerability affecting the Secure Firewall Adaptive Security Appliance (ASA) Software and Secure Firewall Threat Defense (FTD) Software. "A successful exploitation could cause the affected device to reload, leading to a Denial of Service condition." The security issues impact devices running versions of Secure Firewall ASA Software or Cisco Secure FTD Software that are vulnerable to IKEv2 Remote Access VPN (with client services), crypto ikev2 enable client-services port , SSL-VPN - webvpn enable , and Zero Trust Network Access 2.

The following versions of ASA and FTD software are affected: ASA 9.161, Fixed in 89.16.4.50; ASA 9.181, Fixed in 89.18.4.50; ASA 9.20, Fixed in 9.20.4.235; ASA 9.22, Fixed in 9.22.3.191; ASA 9.23, Fixed in 9.23.1.211; ASA 9.24, Fixed in 9.24.1.221; FTD 7.0, Fixed in Cisco_FTD_Hotfix_GC-7.0.9.1-1.sh.REL.tar; FTD 7.2, Fixed in Cisco_FTD_SSP_FP1K_Hotfix_GC-7.0.9.1-1.sh.REL.tar; FTD 7.4, Fixed in Cisco_FTD_Hotfix_HM-7.2.11.1-2.sh.REL.tar; FTD 7.6, Fixed in Cisco_FTD_Hotfix_DD-7.6.4.1-2.sh.REL.tar; and FTD 10.0, Fixed in Cisco_FTD_SSP_FP3K_Hotfix_S-10.0.0.1-2.sh.REL.tar.