CWE-664 Resource Mismanagement in Cisco Secure Firewall
CVE-2026-20336 Published on September 16, 2026

Cisco Secure Adaptive Security Appliance Software, Secure Firewall Threat Defense Software and Secure Firewall Management Center Software Hardening Release - Resource Lifetime Management Vulnerabilities
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Adaptive Security Appliance Software, Cisco Secure Firewall Threat Defense Software and Cisco Secure Firewall Management Center Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20336 are related to issues concerning improper control of a resource through its lifetime that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-664.

NVD

Vulnerability Analysis

Attack Vector:
ADJACENT_NETWORK
Attack Complexity:
LOW
Privileges Required:
NONE
User Interaction:
NONE
Scope:
UNCHANGED
Confidentiality Impact:
HIGH
Integrity Impact:
HIGH
Availability Impact:
HIGH

Weakness Type

Improper Control of a Resource Through its Lifetime

The software does not maintain or incorrectly maintains control over a resource throughout its lifetime of creation, use, and release.


Products Associated with CVE-2026-20336

stack.watch emails you whenever new vulnerabilities are published in Cisco Adaptive Security Appliance or Cisco Secure Firewall Management Center. Just hit a watch button to start following.

 
 

Affected Versions

Cisco Secure Firewall Adaptive Security Appliance (ASA) Software: Cisco Secure Firewall Management Center (FMC): Cisco Secure Firewall Threat Defense (FTD) Software: