<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA 5525 - running 9.16(4) CVE-2024-20353 and CVE-2024-20359 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5525-running-9-16-4-cve-2024-20353-and-cve-2024-20359/m-p/5092879#M1112175</link>
    <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1253178"&gt;@IanP&lt;/a&gt; &lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/upgrade/asa-upgrade/downgrade.html" target="_self"&gt;here&lt;/A&gt; is the downgrade guide, no mention of anything specific in regard to downgrading from an unsupported version.&lt;/P&gt;
&lt;P&gt;I would suggest taking a backup beforehand and if you are concerned, perhaps place a TAC call.&lt;/P&gt;</description>
    <pubDate>Tue, 07 May 2024 16:41:30 GMT</pubDate>
    <dc:creator>Rob Ingram</dc:creator>
    <dc:date>2024-05-07T16:41:30Z</dc:date>
    <item>
      <title>ASA 5525 - running 9.16(4) CVE-2024-20353 and CVE-2024-20359</title>
      <link>https://community.cisco.com/t5/network-security/asa-5525-running-9-16-4-cve-2024-20353-and-cve-2024-20359/m-p/5092822#M1112172</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I've inherited an issue that i'm a bit confused with networking isn't really my wheelhouse&amp;nbsp;I've recently been trying to patch our Cisco ASA 5525 which is running ASA Version 9.16(4) which looking at the documentation it appears that it isn't supported (not sure how\why it was installed).&lt;/P&gt;&lt;P&gt;I've been looking into&amp;nbsp;CVE-2024-20353 and CVE-2024-20359&lt;SPAN&gt;&amp;nbsp;and realize that it needs to be updated but have no idea what to upgrade it to as the software checker suggests&amp;nbsp;9.16.4.57 but according to the software matrix 9.16 shouldn't even be on there so would the sensible thing be to downgrade to 9.14(4)24?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 16:22:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5525-running-9-16-4-cve-2024-20353-and-cve-2024-20359/m-p/5092822#M1112172</guid>
      <dc:creator>IanP</dc:creator>
      <dc:date>2024-05-07T16:22:40Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5525 - running 9.16(4) CVE-2024-20353 and CVE-2024-20359</title>
      <link>https://community.cisco.com/t5/network-security/asa-5525-running-9-16-4-cve-2024-20353-and-cve-2024-20359/m-p/5092850#M1112173</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1253178"&gt;@IanP&lt;/a&gt; yes you are correct, 9.14 is the last supported version for the ASA 5525-X.&lt;/P&gt;
&lt;P&gt;&lt;STRONG class="ph b"&gt;No support in ASA 9.15(1) and later for the ASA 5525-X, &lt;/STRONG&gt;ASA 5545-X, and ASA 5555-X—&lt;STRONG&gt;ASA 9.14(x) is the last supported version.&lt;/STRONG&gt; &lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/asa915/release/notes/asarn915.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/asa/asa915/release/notes/asarn915.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;You should downgrade to 9.14(4)24 to resolve the latest vulnerabilities.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="RobIngram_0-1715099249970.png" style="width: 551px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/217755iE968E8ADC9A96027/image-dimensions/551x254?v=v2" width="551" height="254" role="button" title="RobIngram_0-1715099249970.png" alt="RobIngram_0-1715099249970.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://software.cisco.com/download/home/284143129/type/280775065/release/9.14.4%20Interim" target="_blank"&gt;https://software.cisco.com/download/home/284143129/type/280775065/release/9.14.4%20Interim&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;HTH&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 16:29:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5525-running-9-16-4-cve-2024-20353-and-cve-2024-20359/m-p/5092850#M1112173</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2024-05-07T16:29:33Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5525 - running 9.16(4) CVE-2024-20353 and CVE-2024-20359</title>
      <link>https://community.cisco.com/t5/network-security/asa-5525-running-9-16-4-cve-2024-20353-and-cve-2024-20359/m-p/5092867#M1112174</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt;&amp;nbsp;Thanks for the quick reply. Is there a special way to downgrade unsupported version? Just want to make sure its done correctly as its remote.&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 16:36:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5525-running-9-16-4-cve-2024-20353-and-cve-2024-20359/m-p/5092867#M1112174</guid>
      <dc:creator>IanP</dc:creator>
      <dc:date>2024-05-07T16:36:39Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5525 - running 9.16(4) CVE-2024-20353 and CVE-2024-20359</title>
      <link>https://community.cisco.com/t5/network-security/asa-5525-running-9-16-4-cve-2024-20353-and-cve-2024-20359/m-p/5092879#M1112175</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1253178"&gt;@IanP&lt;/a&gt; &lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/upgrade/asa-upgrade/downgrade.html" target="_self"&gt;here&lt;/A&gt; is the downgrade guide, no mention of anything specific in regard to downgrading from an unsupported version.&lt;/P&gt;
&lt;P&gt;I would suggest taking a backup beforehand and if you are concerned, perhaps place a TAC call.&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 16:41:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5525-running-9-16-4-cve-2024-20353-and-cve-2024-20359/m-p/5092879#M1112175</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2024-05-07T16:41:30Z</dc:date>
    </item>
  </channel>
</rss>

