A researcher at Information Risk Management at the end of July discovered a line printer daemon flaw that could crash Cisco IOS.
According to IRM, if the length of the hostname of the router is not checked before being copied into a fixed size memory buffer, IOS could be open to a remote stack overflow.
Cisco, in its security response, said the the vulnerability could be eliminated by disabling the LPD services if they are not required. LPD is disabled by default on Cisco IOS routers, Cisco adds.
Go here for more Cisco Security Advisories
Go here for more Cisco Security Responses
Go to Cisco Subnet for more Cisco news, blogs, discussion forums, security alerts, book giveaways, and more.
Recent Cisconet blog entries
Subscribe to Network World’s Cisco News Alert, which includes a weekly digest of all Cisco Subnet items




