Top Stories
|
Cisco warns over serious authentication bug8 Sep 2005 11:23 Who goes there?Cisco has warned of a vulnerability in its IOS Firewall Authentication Proxy which might be used by hackers to launch denial of service attacks against vulnerable systems. The vulnerability stems from a software bug in processing user authentication credentials which might be exploited to cause a buffer overflow. Successful attacks can cause an affected device to reload and might even allow arbitrary code execution provided a vulnerable Authentication Proxy is configured to handle either FTP or Telnet Sessions. Devices that do not support, or are not configured for Firewall Authentication Proxy for either FTP or Telnet Services are not affected. The vulnerability applies to various versions of Cisco IOS 12.x. An advisory from Cisco provides a matrix explaining how users can get software updates to guard against possible attack. A US-CERT advisory gives a more concise overview of the problem which security notification firm Secunia rates as moderately critical. ®
Track this type of story as a custom Atom/RSS feed or by email. Related storiesNetwork security vulns keep sysadmins busy (23 May 2007)
|
Breaking Hardware News
Nvidia issued some somber news for shareholders today, revealing a financial forecast cut short due to slowing sales, a delayed ramp for new product, and a hefty payout due to faulty laptop chips.
Newsletter |