CERT mailing list archives

Cisco Releases Security Updates


From: "US-CERT" <US-CERT () ncas us-cert gov>
Date: Wed, 02 May 2018 15:04:50 -0500

U.S. Department of Homeland Security US-CERT

National Cyber Awareness System:



Cisco Releases Security Updates [ 
https://www.us-cert.gov/ncas/current-activity/2018/05/02/Cisco-Releases-Security-Updates ] 05/02/2018 01:42 PM EDT 
Original release date: May 02, 2018

Cisco has released updates to address vulnerabilities affecting multiple products. A remote attacker could exploit some 
of these vulnerabilities to take control of an affected system.

NCCIC encourages users and administrators to review the following Cisco Security Advisories and apply the necessary 
updates:


  * WebEx Advanced Recording Format Remote Code Execution Vulnerability cisco-sa-20180502-war [ 
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180502-war ] 
  * Prime File Upload Servlet Path Traversal and Remote Code Execution Vulnerability cisco-sa-20180502-prime-upload [ 
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180502-prime-upload ] 
  * Secure Access Control System Remote Code Execution Vulnerability cisco-sa-20180502-acs1 [ 
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180502-acs1 ] 
  * Wireless LAN Controller 802.11 Management Frame Denial-of-Service Vulnerability cisco-sa-20180502-wlc-mfdos [ 
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180502-wlc-mfdos ] 
  * Wireless LAN Controller IP Fragment Reassembly Denial-of-Service Vulnerability cisco-sa-20180502-wlc-ip [ 
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180502-wlc-ip ] 
  * Meeting Server Remote Code Execution Vulnerability cisco-sa-20180502-cms-cx [ 
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180502-cms-cx ] 
  * Aironet 1810, 1830, and 1850 Series Access Points Point-to-Point Tunneling Protocol Denial-of-Service Vulnerability 
cisco-sa-20180502-ap-ptp [ 
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180502-ap-ptp ] 
  * Aironet 1800, 2800, and 3800 Series Access Points Secure Shell Privilege Escalation Vulnerability 
cisco-sa-20180502-aironet-ssh [ 
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180502-aironet-ssh ] 
________________________________________________________________________

This product is provided subject to this Notification [ http://www.us-cert.gov/privacy/notification ] and this Privacy 
& Use [ http://www.us-cert.gov/privacy/ ] policy.

________________________________________________________________________

A copy of this publication is available at www.us-cert.gov [ https://www.us-cert.gov ]. If you need help or have 
questions, please send an email to info () us-cert gov. Do not reply to this message since this email was sent from a 
notification-only address that is not monitored. To ensure you receive future US-CERT products, please add US-CERT () 
ncas us-cert gov to your address book. 

OTHER RESOURCES: Contact Us [ http://www.us-cert.gov/contact-us/ ] | Security Publications [ 
http://www.us-cert.gov/security-publications ] | Alerts and Tips [ http://www.us-cert.gov/ncas ] | Related Resources [ 
http://www.us-cert.gov/related-resources ]  

STAY CONNECTED: Sign up for email updates [ http://public.govdelivery.com/accounts/USDHSUSCERT/subscriber/new ] 


Current thread: