Network World
Saturday, October 11, 2008
DNSstuff.com
Get information about your IP
IP Information
50+ On-demand DNS and network tools

Cisco Subnet Blog

Cisco Subnet

Navigation

Cisco points to security flaw in its firewall module

A hole in Cisco's Firewall Services Module could result in a reload of the module, or if exploited repeatedly, could cause a sustained denial-of-service attack, warns the vendor. FWSM is an integrated firewall module for Cisco Catalyst 6500 switches and Cisco 7600 Series routers. In its security alert issued Wednesday, Cisco says there are "no known instances of intentional exploitation of this issue," but that it has "observed data streams that appear to be unintentionally triggering this vulnerability." According to the security advisory, the security hole could be "triggered with standard network traffic, which is passed through the Application Layer Protocol Inspection process."

The only FWSM release affected by this vulnerability is FWSM System Software version 3.2(3).

FWSM software version 3.2(4) contains the fixes for the vulnerability and will be available for download the week beginning Dec. 31 at this URL.

A workaround for this vulnerability can be found at the security advisory.

More Cisco Security Advisories

More Cisco Security Responses

More Cisco Subnet items:

* Quiz: How much do you know about Cisco? Take our quiz and find out

* 7 Cisco bad luck happenings in '07

* Top 6 Cisco acquisitions of 2007; what it should buy in 2008

Go to Cisco Subnet for more Cisco news, blogs, discussion forums, security alerts, book giveaways, and more.

Recent Cisconet blog entries

Network World's IT Buyer's Guide: Cisco products

Subscribe to Network World's Cisco Alert, which includes a weekly digest of all Cisco Subnet items

 

Click to read the article this is in response to.


About the Cisco Subnet Blog

RSS feed Blog archive.

The Cisco Subnet blog is the official blog of the Network World Cisco Subnet community, managed by Editor Linda Leung. Cisco Subnet is the independent voice of Cisco customers and is your gateway to daily Cisco news, blogs, opinion, books, prize giveaways and more. Visit the Cisco Subnet home page daily and while you are there, subscribe to the Cisco Alert e-mail newsletter, which includes news and views generated by the Cisco Subnet community as well as Cisco-related stories on Network World and elsewhere on the Web.

LAN & WAN news

RSS feed (WAN community)

Advertisement: