All the latest UK technology news, reviews and analysis

Cisco hit by trio of vulnerabilities

by Arif Mohamed

21 Apr 2004

Be the first to comment

  • Tweet this

Cisco has warned users of three vulnerabilities that could compromise the security of its networking products.

The first affects some of its routers and switches and could allow malicious users to launch a denial of service attack.

The flaw in Cisco's Internetwork Operating System (IOS) software version 12.0 only affects certain devices, but could be exploited by a remote user to cause the device to reload repeatedly. Cisco has produced a code fix, and the advisory is available here.

The networking firm also flagged up a vulnerability in the TCP specification RFC793, which could allow a malicious user to quickly reset any established TCP connections.

All Cisco products that contain a TCP stack are susceptible. Vulnerable products include the Catalyst line, Microhub 1500 and Secure PIX Firewall. This advisory is available here.

The TCP vulnerability also affects all products that run IOS 12.0 software, such as IOS Firewall. Only TCP sessions that terminate on the devices are affected, as the vulnerability affects the endpoints of a session, according to Cisco. This advisory is available here.

Cisco advised customers to upgraded their software through the regular route, which is normally through Cisco's website at www.cisco.com/security

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

IT priorities for 2012

What is the most important IT priority for your company this year?

98%

0%

1%

0%

1%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Accurev

Top 5 software development challenges

This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes

Talend

Rubbish in, rubbish enterprise

Why good data management at all levels is essential in the modern business (video, 6mins)

Software Design Architect (Windows Database Application)

Software Design Architect (Windows Database Application...

Lead Java Developer - Mobile- Digital- Amsterdam

Lead Java Developer - Fast growing, young and international...

Graduate Software Support Engineer

Job Specification Graduate Support Engineer...

c# or asp.net Software Developer

Job Specification For: Software Developer...

To send to more than one email address, simply separate each address with a comma.