<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Clarification on required patches for CVE-2022-20715 and ASA with in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/clarification-on-required-patches-for-cve-2022-20715-and-asa/m-p/4667884#M1092603</link>
    <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/255588"&gt;@MauryJ&lt;/a&gt; those packages are for different hardware. &lt;/P&gt;
&lt;P class="p"&gt;Firepower 1000 series:&lt;A class="xref" href="https://software.cisco.com/download/home/286323330/type/286306337/release/6.7.0.3" target="_blank" rel="noopener"&gt;Cisco_FTD_SSP_FP1K_Hotfix_AA-6.7.0.4-2&lt;/A&gt;&lt;/P&gt;
&lt;P class="p"&gt;Firepower 2100 series: &lt;A class="xref" href="https://software.cisco.com/download/home/286312096/type/286306337/release/6.7.0.3" target="_blank" rel="noopener"&gt;Cisco_FTD_SSP_FP2K_Hotfix_AA-6.7.0.4-2&lt;/A&gt;&lt;/P&gt;
&lt;P class="p"&gt;Firepower 4100/9300: &lt;A class="xref" href="https://software.cisco.com/download/home/286287252/type/286306337/release/6.7.0.3" target="_blank" rel="noopener"&gt;Cisco_FTD_SSP_Hotfix_AA-6.7.0.4-2&lt;/A&gt;&lt;/P&gt;
&lt;P class="p"&gt;ASA 5500-X series and ISA 3000: &lt;A class="xref" href="https://software.cisco.com/download/home/286285782/type/286306337/release/6.7.0.3?catid=268438162" target="_blank" rel="noopener"&gt;Cisco_FTD_Hotfix_AA-6.7.0.4-2&lt;/A&gt;&lt;/P&gt;
&lt;P class="p"&gt;FTDv: &lt;A class="xref" href="https://software.cisco.com/download/home/286306503/type/286306337/release/6.7.0.3" target="_blank" rel="noopener"&gt;Cisco_FTD_Hotfix_AA-6.7.0.4-2&lt;/A&gt;&lt;/P&gt;
&lt;P class="p"&gt;What hardware are you running? Are you sure your hardware even supports 6.7&lt;/P&gt;</description>
    <pubDate>Thu, 11 Aug 2022 14:56:57 GMT</pubDate>
    <dc:creator>Rob Ingram</dc:creator>
    <dc:date>2022-08-11T14:56:57Z</dc:date>
    <item>
      <title>Clarification on required patches for CVE-2022-20715 and ASA with FTD</title>
      <link>https://community.cisco.com/t5/network-security/clarification-on-required-patches-for-cve-2022-20715-and-asa/m-p/4667879#M1092601</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I am reviewing the details for the &lt;SPAN&gt;CVE-2022-20715 notice, at:&lt;BR /&gt;&lt;A href="https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asa-dos-tL4uA4AA" target="_blank"&gt;https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asa-dos-tL4uA4AA&lt;/A&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;We are using an ASA with Firepower Services, v6.7.0.3.&amp;nbsp; &amp;nbsp; &amp;nbsp;About 3/4 of the way down the page, on the table for FTD software, this is listed:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Cisco FTD Software Release:&lt;BR /&gt;6.7.0&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;First Fixed Release for This Vulnerability:&lt;BR /&gt;Cisco_FTD_Hotfix_AA-6.7.0.4-2.sh.REL.tar&lt;BR /&gt;Cisco_FTD_SSP_FP1K_Hotfix_AA-6.7.0.4-2.sh.REL.tar&lt;BR /&gt;Cisco_FTD_SSP_FP2K_Hotfix_AA-6.7.0.4-2.sh.REL.tar&lt;BR /&gt;Cisco_FTD_SSP_Hotfix_AA-6.7.0.4-2.sh.REL.tar&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;First Fixed Release for All Vulnerabilities Described in the Bundle of Advisories:&lt;BR /&gt;Migrate to a fixed release.&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I'm not clear on what exactly I need to patch with.&amp;nbsp; &amp;nbsp;Do I need to apply all four of the packages listed under the second column?&amp;nbsp; &amp;nbsp;And for 'first fixed release for all vuln described in the bundle...' is that indicating that we need to upgrade to a later release to address other vulnerabilities besides those addressed in this advisory?&lt;BR /&gt;&lt;BR /&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 11 Aug 2022 14:47:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/clarification-on-required-patches-for-cve-2022-20715-and-asa/m-p/4667879#M1092601</guid>
      <dc:creator>MauryJ</dc:creator>
      <dc:date>2022-08-11T14:47:16Z</dc:date>
    </item>
    <item>
      <title>Re: Clarification on required patches for CVE-2022-20715 and ASA with</title>
      <link>https://community.cisco.com/t5/network-security/clarification-on-required-patches-for-cve-2022-20715-and-asa/m-p/4667884#M1092603</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/255588"&gt;@MauryJ&lt;/a&gt; those packages are for different hardware. &lt;/P&gt;
&lt;P class="p"&gt;Firepower 1000 series:&lt;A class="xref" href="https://software.cisco.com/download/home/286323330/type/286306337/release/6.7.0.3" target="_blank" rel="noopener"&gt;Cisco_FTD_SSP_FP1K_Hotfix_AA-6.7.0.4-2&lt;/A&gt;&lt;/P&gt;
&lt;P class="p"&gt;Firepower 2100 series: &lt;A class="xref" href="https://software.cisco.com/download/home/286312096/type/286306337/release/6.7.0.3" target="_blank" rel="noopener"&gt;Cisco_FTD_SSP_FP2K_Hotfix_AA-6.7.0.4-2&lt;/A&gt;&lt;/P&gt;
&lt;P class="p"&gt;Firepower 4100/9300: &lt;A class="xref" href="https://software.cisco.com/download/home/286287252/type/286306337/release/6.7.0.3" target="_blank" rel="noopener"&gt;Cisco_FTD_SSP_Hotfix_AA-6.7.0.4-2&lt;/A&gt;&lt;/P&gt;
&lt;P class="p"&gt;ASA 5500-X series and ISA 3000: &lt;A class="xref" href="https://software.cisco.com/download/home/286285782/type/286306337/release/6.7.0.3?catid=268438162" target="_blank" rel="noopener"&gt;Cisco_FTD_Hotfix_AA-6.7.0.4-2&lt;/A&gt;&lt;/P&gt;
&lt;P class="p"&gt;FTDv: &lt;A class="xref" href="https://software.cisco.com/download/home/286306503/type/286306337/release/6.7.0.3" target="_blank" rel="noopener"&gt;Cisco_FTD_Hotfix_AA-6.7.0.4-2&lt;/A&gt;&lt;/P&gt;
&lt;P class="p"&gt;What hardware are you running? Are you sure your hardware even supports 6.7&lt;/P&gt;</description>
      <pubDate>Thu, 11 Aug 2022 14:56:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/clarification-on-required-patches-for-cve-2022-20715-and-asa/m-p/4667884#M1092603</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2022-08-11T14:56:57Z</dc:date>
    </item>
    <item>
      <title>Re: Clarification on required patches for CVE-2022-20715 and ASA with</title>
      <link>https://community.cisco.com/t5/network-security/clarification-on-required-patches-for-cve-2022-20715-and-asa/m-p/4671957#M1092787</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt;&amp;nbsp; Thanks Rob-&lt;/P&gt;&lt;P&gt;We are using an ASA-5516X with Firepower Services, and it is running 6.7.0.3 currently.&amp;nbsp; &amp;nbsp;Last I checked, it could go up to at least 7.0.&lt;/P&gt;</description>
      <pubDate>Thu, 18 Aug 2022 18:25:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/clarification-on-required-patches-for-cve-2022-20715-and-asa/m-p/4671957#M1092787</guid>
      <dc:creator>MauryJ</dc:creator>
      <dc:date>2022-08-18T18:25:43Z</dc:date>
    </item>
    <item>
      <title>Re: Clarification on required patches for CVE-2022-20715 and ASA with</title>
      <link>https://community.cisco.com/t5/network-security/clarification-on-required-patches-for-cve-2022-20715-and-asa/m-p/4671960#M1092788</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/255588"&gt;@MauryJ&lt;/a&gt; if you are running ASA with Firepower then you'd want to upgrade the FPR module, the latest is 7.0.4 - there doesn't appear to be 6.7.0.4 for FPR module. &lt;A href="https://software.cisco.com/download/home/286285782/type/286277393/release/7.0.4" target="_blank"&gt;https://software.cisco.com/download/home/286285782/type/286277393/release/7.0.4&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;The images you provided in the first post are for the FTD image, which is different to the FPR module, which also uses the ASA image.&lt;/P&gt;</description>
      <pubDate>Thu, 18 Aug 2022 18:31:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/clarification-on-required-patches-for-cve-2022-20715-and-asa/m-p/4671960#M1092788</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2022-08-18T18:31:33Z</dc:date>
    </item>
  </channel>
</rss>

