PDA

View Full Version : Cisco Security Advisory: Cisco IOS(R) Interface Blocked by IPv4 Packets: Free Software Available To Correct the Problem



Seeseesomethings
20-07-2003, 12:58 PM
Qthi paste mail in cases co ban nao can fix the bug:

-----------------------------------------
Cisco(R) Technical Assistance Center
News Flash - July 18, 2003
http://www.cisco.com/tac
-----------------------------------------
Cisco Security Advisory: Cisco IOS(R) Interface Blocked
by IPv4 Packets: Free Software Available To Correct the Problem
-----------------------------------------

Cisco routers and switches running Cisco IOS software and configured
to process Internet Protocol version 4 (IPv4) packets are vulnerable
to a Denial of Service (DoS) attack. Multiple IPv4 packets with
specific protocol fields sent directly to the device may cause the
input interface to stop processing traffic once the input queue is
full. No authentication is required to process the inbound packet.
Processing of IPv4 packets is enabled by default. Devices running
only IP version 6 (IPv6) are not affected.

Cisco has made software available, free of charge, to correct the
problem.

We recommend that you follow the instructions in this workaround
to protect your networks:

http://tac1.ciscomessage.com/cgi-bin3/DM/y/eRpb0FGOGI0HEu0BBSN0AY

For more details, including instructions for obtaining fixed software,
read the complete security advisory at:

http://tac1.ciscomessage.com/cgi-bin3/DM/y/eRpb0FGOGI0HEu0BBSD0AO

-----------------------------------------

Following is the link from groupstudy.com

http://www.groupstudy.com/form/read.php?f=7&i=72463&t=72463

Regards,

TGA_Certificationteam
22-07-2003, 11:56 AM
Nếu bạn để ý thì các IOS version được release từ 1-6-2003 đều không bị ảnh hưởng của lổi này.

Hiện tại mình có IOS cho 2500, version 12.3 1a, rất cool cho việc thực hành, ai thích thì chép cho, hoặc đổi lấy cái IOS IPsec và Firewall cũng được. Version này đã fix lổi Input queue mới đây.

Bạn có thể xem thêm ở đây http://www.ddth.com/showthread.php?t=22189