03-17-2024 06:18 PM
I have Vulnerability comes in scan for openssh. Currently have openssh 8.0 version on firepower. can anyone suggest what version is good for firepower currently. Or is 8.0 ssh version is ok? Appreciate your response.
03-18-2024 12:48 AM
that should be ok i guess - again check what version of FTD code running, some version have new fix :
03-25-2024 09:09 PM
Dear Experts,
below listed devices are running on my network with their respective IOS versions mentioned, now it seems like the IOS is the suggested one as it is stable. But once our security advisor runs a VA/PT Test on it show OpenSSH Vulnerabilities can any one tell me if there any Hot Fixes available to get them fixed ? These Vulnerabilities are marked as High and IOS is the updated one how to get these fixed. Below is the list of Vulnerabilities local vendor support have no clue or any idea about it.
OpenSSH XMSS Pre-authentication Integer Overflow Vulnerability
OpenSSH scp.c Remote Function Command Injection
OpenSSH sshd Improper Privilege Management
OpenSSH XMSS Pre-authentication Integer Overflow Vulnerability
OpenSSH scp.c Remote Function Command Injection
OpenSSH sshd Improper Privilege Management
Firepower Management Center:
Secure Firewall Management center VM
Version:7.2.5.1 (Build 29)
OS: Fx-OS 2.12.0 (Build 519)
Firewall-1:
Cisco Firepower 1140 with FTD
Version:7.2.5.1 (suggested version)
Firewall-2:
Cisco Firepower 1140 with FTD
Version:7.2.5.1
04-29-2024 08:40 PM
Every Firepower software has a vulnerable SSH version I believe. The most recent 7.4.1.1 has 9.1 which is incredibly low and vulnerable.
07-11-2024 05:53 AM
Is there a to find out which firepower image have openssh version 9.8?
Thank you.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide