Boletines de Vulnerabilidades

Cisco Firewall Services Module Cut-Through Proxy Denial of Service Vulnerability


Información sobre el sistema

   
Software afectado Cisco

Descripción

Cisco Firewall Services Module (FWSM) Software contains a vulnerability that could allow an unauthenticated, remote attacker to cause a reload of an affected system.The vulnerability is due to a race condition when releasing the memory allocated by the cut-through proxy function. An attacker could exploit this vulnerability by sending traffic to match the condition that triggers cut-through proxy authentication.Cisco has released free software updates that address this vulnerability.

More info:

http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140219-fwsm?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20Firewall%20Services%20Module%20Cut-Through%20Proxy%20Denial%20of%20Se

Identificadores estándar

Propiedad Valor
CVE CVE-2014-0710.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-02-26

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT