12-25-2019 01:44 PM
Hi all.
I found my Asa crashing randomly. We use one of the 5516Asa 9.8(1) and FP 6.2 on it. The Firewall crash last week 3 times a day then works fine for another 2 months and crash again. Crash I mean no access to rhe asa even CLI not respond all port led works as usual. On the switch 3650 log says link down and lacp suspend on the remots port. The logs on asa says only connection to Sfr fail. Do You have any idea how to start troubleshooting or have similar problems.
Regards
Solved! Go to Solution.
12-25-2019 03:03 PM
Kindly read Cisco Adaptive Security Appliance Web Services Denial of Service Vulnerability.
Pay close attention to the Exploitation and Public Announcements section which states: In September 2019, the Cisco Product Security Incident Response Team (PSIRT) became aware of additional attempted exploitation of this vulnerability in the wild.
12-25-2019 02:03 PM
make sure all the debug are of on the asa. could be some how it could using it high cpu. check the crash file on othe ASA.
give a command show crashinfo.
also do the upgrade to 9.12.2 its a gold start and stable release.
12-25-2019 02:17 PM
can you upload your firewall configuration. hid the public ip addresses and username and password. so we can look what is causing the issue.
12-25-2019 03:03 PM
Kindly read Cisco Adaptive Security Appliance Web Services Denial of Service Vulnerability.
Pay close attention to the Exploitation and Public Announcements section which states: In September 2019, the Cisco Product Security Incident Response Team (PSIRT) became aware of additional attempted exploitation of this vulnerability in the wild.
07-24-2020 08:05 PM
And here is another: Cisco Adaptive Security Appliance Remote Code Execution and Denial of Service Vulnerability
Same as above, this vulnerability is actively being exploited in the wild.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide