CVE-2025-20136 | Cisco ASA/Firepower Threat Defense NAT DNS Inspection infinite loop (cisco-sa-asaftd-nat-dns-dos-bqhynHTM / Nessus ID 255231)
A vulnerability, which was classified as problematic, has been found in Cisco ASA and Firepower Threat Defense. This issue affects some unknown processing of the component NAT DNS Inspection. Performing manipulation results in infinite loop.
This vulnerability is identified as CVE-2025-20136. The attack can be initiated remotely. There is not any exploit available.
It is advisable to upgrade the affected component.