cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
102
Views
0
Helpful
2
Replies

Ssh vulnerabilities on wsa

Vishal6
Level 3
Level 3

Hi,

Some vulnerabilities have been reported for our hardware wsa model, please let me know how can i remediate it. Below im sharing the same.

 

SSH Server CBC Mode Ciphers Enable
 
OpenSSH < 9.6 Multiple Vulnerabilities
 
SSH Terrapin Prefix Truncation Weakness (CVE-2023-48795)
2 Replies 2

Per this Cisco bug

https://bst.cisco.com/quickview/bug/CSCwi81958

upgrade to 15.5.0-566 

 

Vishal6
Level 3
Level 3

As per below link 15.2.2 consider fixed release.

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-sma-wsa-multi-yKUJhS34#details

Cisco AsyncOS Software Release First Fixed Release for CVE-2025-20184 First Fixed Release for CVE-2025-20185
15.1 and earlier Migrate to a fixed release. Migrate to a fixed release.
15.2 15.2.2-009 15.2.2-009