216.73.216.197

CVE-2026-20005

· Published 04/03/2026 17:16 · Modified 04/03/2026 18:16

Labels: CVE-2026-20005 2026-03-04CVE-2026-20005CWE-392[email protected]

Essential information

Published
04/03/2026 17:16
Modified
04/03/2026 18:16
Author
Creator
CVSS
5.8 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L

CVSS metrics

Description

Multiple Cisco products are affected by a vulnerability in the Snort 3 Detection Engine that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to restart, resulting in an interruption of packet inspection. This vulnerability is due to incomplete parsing of the SSL handshake ingress packets. An attacker could exploit this vulnerability by sending crafted SSL handshake packets. A successful exploit could allow the attacker to cause a denial of service (DoS) condition when the Snort 3 Detection Engine restarts unexpectedly.

NVD status

Status
Awaiting Analysis — CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
cisco / snort 3 cpe:2.3:a:cisco:snort_3:*:*:*:*:*:*:*:*

References