Boletines de Vulnerabilidades

Cisco Integrated Services Routers OpenSSH TCP Denial of Service Vulnerability

   
Software afectado Cisco
 
A vulnerability in the handling of Secure Shell (SSH) TCP packets in the Cisco Integrated Services Routers (ISR) models 800, 819, and 829, could allow an unauthenticated, remote attacker to cause a partial denial of service (DoS) condition due to low memory on the device.The vulnerability is due to the handling of out-of-order, or otherwise invalid, TCP packets on an SSH connection to the device. An attacker could exploit this vulnerability by connecting via SSH to the device and then crafting

More info:

http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160620-isr?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20Integrated%20Services%20Routers%20OpenSSH%20TCP%20Denial%20of%20Servic