Site Archives DoS

New Cisco ASA and PIX Vulnerabilities

Posted on April 9th, 2009

GSA Reference Number: AD090409-01

Simply Put: Cisco has announced a number of newly discovered vulnerabilities in both their Cisco ASA 5500 Series and Cisco PIX Security Appliances running 7.x and 8.x firmware versions.  These vulnerabilities cover SSL and IPSec VPN Connectivity, Access-List Restrictions, and Packet Inspection.  The vulnerabilities in this latest Cisco release are considered critical by Gladiator. We will be reviewing all CoreDefense monitored Cisco ASA and PIX devices for susceptibility.

12 New Cisco Patches

Posted on September 26th, 2008

GSA Reference Number: AD080926-01

Simply Put: Cisco has announced twelve vulnerabilities in multiple Cisco products.  The vulnerabilities range from denial of service to remote exploitation, for some systems.  The denial of service issues will cause the device to reload, if exploited.  Remote exploitation only affects the Cisco uBR10012 model devices.  For a comprehensive list of affected IOS versions, refer to the Cisco article linked below. Gladiator will be reviewing all monitored client Cisco devices to determine what IOS version they are running.  If a device is out of date, it will be updated.

Cisco Advisories – VPN and SIP vulnerabilities

Posted on September 3rd, 2008

GSA Reference Number: AD080903-01

Simply Put: Cisco has announced five vulnerabilities in their Cisco ASA 5500 and PIX devices.  The vulnerabilities deal with denial of service to the device or information disclosure.  The denial of service issues will cause the device to reload, if exploited.  For a comprehensive list of affected IOS versions, refer to the Cisco article linked below. Gladiator will be reviewing all client Cisco devices to determine what IOS version they are running.  If a device is out of date, it will be updated starting this weekend.

Cisco IOS Advisory

Posted on March 27th, 2008

GSA Reference Number: AD080327-01

Simply Put: Cisco has announced five vulnerabilities in their Cisco IOS (Cisco IOS is the operating system that most Cisco devices run, including all routers and switches). Gladiator is recommending customers upgrade their Cisco routers and switches to the latest IOS version. The first four vulnerabilities deal with issues that can lead to loss of service. The final vulnerability deals with possible data leakage. For a comprehensive list of affected IOS versions and recommended patched IOS versions refer to the Cisco article linked below in the Software Versions and Fixes section. To determine the version your Cisco switch or router is running, log in to a terminal session and run “show version” without the quotes. Then refer to the advisory in the reference link section to apply the correct IOS version.