nanog mailing list archives
RE: Cisco IOS Vulnerability
From: Sean Donelan <sean () donelan com>
Date: Thu, 17 Jul 2003 02:01:24 -0400 (EDT)
On Thu, 17 Jul 2003, Mikael Abrahamsson wrote:
On Wed, 16 Jul 2003, Darrell Kristof wrote:Cisco Security Advisory: Cisco IOS Interface Blocked by IPv4 Packet http://www.cisco.com/warp/public/707/cisco-sa-20030717-blocked.shtmlIS anyone seeing this exploited in the wild? It'd be good to know if we need to do panic upgrade or can schedule it for our next maintenance window (which is during the weekend).
According to the cisco advisory, there are no reports of public knowledge of the exploit nor has anyone been detected using the exploit. Since Cisco is keeping the packet information confidential, you can't program an IDS to detect it (i.e. no signature is available). But if your router does hang up, the cisco advisory includes information about checking if you've been hit by this bug; versus the numerous other bugs :-( Cisco stated if they receive any reports of the exploit in the wild, they will re-issue the advisory with the updated information.
Current thread:
- Re: Cisco IOS Vulnerability, (continued)
- Re: Cisco IOS Vulnerability Jason Lixfeld (Jul 16)
- Re: Cisco IOS Vulnerability Jared Mauch (Jul 16)
- Re: Cisco IOS Vulnerability Christopher L. Morrow (Jul 16)
- Re: Cisco IOS Vulnerability Jason Lixfeld (Jul 16)
- RE: Cisco IOS Vulnerability Todd Mitchell - lists (Jul 16)
- Re: Cisco IOS Vulnerability Ryan Tucker (Jul 16)
- Re: Cisco IOS Vulnerability (going OT) Petri Helenius (Jul 16)
- Flapping (was Re: Cisco IOS Vulnerability) Sean Donelan (Jul 16)
- RE: Cisco IOS Vulnerability Mikael Abrahamsson (Jul 16)
- Re: Cisco IOS Vulnerability Jared Mauch (Jul 16)
- RE: Cisco IOS Vulnerability Sean Donelan (Jul 16)
- Re: Cisco IOS Vulnerability Jeff Kell (Jul 16)
- Re: Cisco IOS Vulnerability Jack Bates (Jul 17)
- Re: Cisco IOS Vulnerability Andy Dills (Jul 17)
- Re: Cisco IOS Vulnerability Joe Abley (Jul 17)
- Re: Cisco IOS Vulnerability micah mcnelly (Jul 17)
- Re: Cisco IOS Vulnerability Michael Painter (Jul 17)
- Re: Cisco IOS Vulnerability Daniel Karrenberg (Jul 18)
- Re: Cisco IOS Vulnerability joshua sahala (Jul 18)
- Re: Cisco IOS Vulnerability Petri Helenius (Jul 18)
- RE: Cisco IOS Vulnerability Darrell Kristof (Jul 16)