Multiple Cisco products are affected by a vulnerability in the rate filtering feature of the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured rate limiting filter.
This vulnerability is due to an incorrect connection count comparison. An attacker could exploit this vulnerability by sending traffic through an affected device at a rate that exceeds a configured rate filter. A successful exploit could allow the attacker to successfully bypass the rate filter. This could allow unintended traffic to enter the network protected by the affected device.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-20342.json"
[
{
"events": [
{
"introduced": "0"
},
{
"fixed": "7.0.6.2"
}
]
},
{
"events": [
{
"introduced": "7.2.0"
},
{
"fixed": "7.2.6"
}
]
},
{
"events": [
{
"introduced": "7.4.0"
},
{
"fixed": "7.4.2"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.1.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.3.0"
}
]
}
]