Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 39 guests online
 
Advertisement

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Malwarearrow Cisco Addresses Flaws in IOS
EH-Net
May 23, 2013, 10:50:52 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: Cisco Addresses Flaws in IOS  (Read 3545 times)
0 Members and 1 Guest are viewing this topic.
don
Editor-In-Chief
Administrator
Hero Member
*****
Offline Offline

Posts: 4167


Editor-In-Chief


View Profile WWW
« on: January 26, 2007, 11:42:45 AM »

Quote
Cisco is providing patches for its popular Internetwork Operating System in response to the discovery of three flaws, the most serious of which would allow hackers to insert malicious code in order to corrupt devices running IOS.

The company addressed the flaws in a series of advisories released Jan. 24.

According to Cisco officials, the company's IOS TCP listener in some versions of the IOS software is vulnerable to a memory leak that could be exploited to cause a DoS (denial-of-service) attack.

Another vulnerability exists in the way Cisco IOS processes a number of different types of IPv4 packets containing a specially crafted IP option, and a third deals with IOS' failure to properly process IPv6 packets with specially crafted routing headers. Successful exploitation of these last two flaws could lead to a denial-of-service condition or the launching of arbitrary code.

In each of the advisories, the company states that it is "not aware of any public announcements or malicious use of the vulnerability described in this advisory." Cisco officials could not immediately be reached for further comment.

Andrew Storm, director of security operations for San Francisco-based nCircle Network Security, said the flaws should be taken seriously—if for no other reason than because of how widely used IOS is.

"It took me probably a good hour yesterday to find a version for my router that wasn't vulnerable," he said. "That's a daunting task when you extrapolate that to larger enterprises."


He said the workarounds proposed by Cisco, such as turning on "IP options drop," should already be part of an enterprise's standard operating procedures. If they aren't, then most likely it is because following those steps may impair functionality in areas critical to the business, he said.

The advisories by Cisco led to a warning by the U.S. Computer Emergency Readiness Team that "repeated exploitation of these vulnerabilities may result in a sustained denial-of-service condition. … Because devices running IOS may transmit traffic for a number of other networks, the secondary impacts of a denial of service may be severe."

For original story:
http://www.eweek.com/article2/0,1895,2087598,00.asp
Logged

CISSP, MCSE, CSTA, Security+ SME
slimjim100
EH-Net Columnist
Sr. Member
*****
Offline Offline

Posts: 385



View Profile WWW
« Reply #1 on: January 26, 2007, 12:00:45 PM »

Yea this is got the network engineers working over time to fix. One good thing is that you can use ACL's to protect yourself from alot of this and if you are not using IPv6 you are safe from the last advisory. Basically upgrade your IOS and make sure to lock it down. If anyone out there would like me to look at some of there configs i will but only if I do not get bogged down with too many. Feel free to contact me at slimjim100(at)gmail.com.

Brian
Logged

CISSP, CCSE, CCNA, CCAI, Network+, Security+, JNCIA, & MCP
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.059 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.