Original URL: http://www.channelregister.co.uk/2005/09/08/cisco_authentication_bug/
Cisco has warned of a vulnerability in its IOS Firewall Authentication Proxy which might be used by hackers to launch denial of service attacks against vulnerable systems. The vulnerability stems from a software bug in processing user authentication credentials which might be exploited to cause a buffer overflow.
Successful attacks can cause an affected device to reload and might even allow arbitrary code execution provided a vulnerable Authentication Proxy is configured to handle either FTP or Telnet Sessions. Devices that do not support, or are not configured for Firewall Authentication Proxy for either FTP or Telnet Services are not affected.
The vulnerability applies to various versions of Cisco IOS 12.x. An advisory (http://www.cisco.com/warp/public/707/cisco-sa-20050907-auth_proxy.shtml) from Cisco provides a matrix explaining how users can get software updates to guard against possible attack. A US-CERT advisory (http://www.kb.cert.org/vuls/id/236045) gives a more concise overview of the problem which security notification firm Secunia rates (http://secunia.com/advisories/16719/) as moderately critical. ®
Network security vulns keep sysadmins busy (23 May 2007)
http://www.channelregister.co.uk/2007/05/23/network_security_update/
Cisco squishes bug trio (25 January 2007)
http://www.channelregister.co.uk/2007/01/25/cisco_ios_bug_fix/
Big debate over small packets (8 September 2005)
http://www.channelregister.co.uk/2005/09/08/icmp_vulns/
Cisco security flap leaves millions scrambling for help (3 August 2005)
http://www.theregister.co.uk/2005/08/03/cisco_password_backlog/
Cisco portal password security compromised (3 August 2005)
http://www.theregister.co.uk/2005/08/03/cisco_password_security_flap/
Exploit writers team up to target Cisco routers (2 August 2005)
http://www.theregister.co.uk/2005/08/02/cisco_exploits/
Cisco details Black Hat vuln fix (1 August 2005)
http://www.channelregister.co.uk/2005/08/01/cisco_ipv6_black_hat_vuln/
Settlement reached in Cisco flaw dispute (29 July 2005)
http://www.channelregister.co.uk/2005/07/29/cisco_settles_rogue_researcher_dispute/
Cisco, ISS file suit against rogue researcher (28 July 2005)
http://www.channelregister.co.uk/2005/07/28/cisco_iss_sue_vuln_whistleblower/
Cisco patches security software (15 July 2005)
http://www.theregister.co.uk/2005/07/15/csa_security_glitch/
© Copyright 2008