• Categories
    Category
  • Categories
    Category
  • News
  • Tutorials
  • Forums
  • Tags
  • Users
News Comments FAQ Related Articles

Cisco releases patches for several of its products

3124

cisco

Cisco has released several patches to mitigate the exposure of its several affected products. A bug in Cisco Aironet 1830 and Cisco Aironet 1850 series found in Cisco products that has access points running the Cisco Mobility Express Software which could enable a remote attacker to gain complete control over the affected devices.

This bug creates the existence of default credentials for an affected device that is running the Cisco Mobility Express Software. This access means that a remote attacker with a layer 3 connectivity could use the SSH to login in to any device with higher privileges. And the attacker could take the whole control of the device.

There was also a bug found in Wireless Multimedia Extensions (WME) action frame processing in Cisco Wireless LAN Controller (WLC) software that could open doors for remote attacker to launch Denial of Service attacks.

Another type of vulnerability was found due to the incomplete IPv6 UDP header validation. According to the notice " An attacker could exploit this vulnerability by sending a crafted IPv6 UDP packet to a specific port on the targeted device," the notice reads. From there, the attacker could " impact the availability of the device as it could unexpectedly reload."

Cisco explained that these flaws were due to the missing internal handler. Cisco also added that these vulnerabilities could be exploited by attackers by accessing a specific hidden URL on the interface that would possibly result in the Denial of Service (DoS) situation.

Cisco has addressed all of the four vulnerabilities and the US-CERT has advised its users and administrators to review the Cisco security advisories and should apply the updates as needed.

Tags:
john
Author: 

Comments ( 0 )

No comments available

Add a comment

Frequently asked questions ( 5 )

Q

What issue resides for WME to access Cisco releases?

A

There was also a bug found in Wireless Multimedia Extensions (WME) action frame processing in Cisco Wireless LAN Controller (WLC) software that could open doors for the remote attacker to launch Denial of Service attacks.

Q

What are other vulnerabilities available in Cisco releases?

A

Cisco also added that these vulnerabilities could be exploited by attackers by accessing a specific hidden URL on the interface that would possibly result in the Denial of Service (DoS) situation.

Q

How does OSPF determine cost in Cisco?

A

OSPF uses a reference bandwidth of 100 Mbps for cost calculation. The formula to calculate the cost is reference bandwidth divided by interface bandwidth.

Q

How does OSPF work Cisco?

A

OSPF offers a very distinguishable feature named: Routing Areas. It means dividing routers inside a single autonomous system running OSPF, into areas where each area consists of a group of connected routers.

Q

What is Cisco OSPF?

A

Routers connect networks using the Internet Protocol (IP), and OSPF (Open Shortest Path First) is a router protocol used to find the best path for packets as they pass through a set of connected networks.

Related Forums in Cisco releases patches for several of its products

Related Forums in Cisco releases patches for several of its products

Web Server
christian class=
Tool to scan the vulnerabilities in web server
Apr 21, 2017
Breach-vulnerability
markdjokovic class=
clear the frozen emails in exim
Sep 26, 2018
Breach-vulnerability
joshwariddin class=
script injection vulnerabilities
Sep 25, 2018

Related News in Cisco releases patches for several of its products

Related News in Cisco releases patches for several of its products

Cisco releases patches for several of its products
Cisco releases patches for several of its products
Apr 7, 2017
Schools are the most common cybercrime targets - ESET
Schools are the most common cybercrime targets - ESET
May 3, 2017
Samba vulnerability calls to mind WannaCry fears to Linux/ UNIX
Samba vulnerability calls to mind WannaCry fears to Linux/ UNIX
May 30, 2017
Patches available for Linux Sudo vulnerability
Patches available for Linux Sudo vulnerability
Jun 1, 2017
Yahoo banishes ImageMagick software after it was found vulnerable to data exfiltration
Yahoo banishes ImageMagick software after it was found vulnerable to data exfiltration
May 24, 2017
New Security Breach at Avast Aimed at Its Ccleaner Software
New Security Breach at Avast Aimed at Its Ccleaner Software
Oct 26, 2019
BlueBorne attacks billions of devices, every device is vulnerable
BlueBorne attacks billions of devices, every device is vulnerable
Sep 13, 2017
Millions of Linux Servers Under Worm Attack Via Exim Flaw
Millions of Linux Servers Under Worm Attack Via Exim Flaw
Jun 18, 2019
Back To Top!
Rank
User
Points

Top Contributers

userNamenaveelansari
135850

Top Contributers

userNameayanbhatti
92510

Top Contributers

userNamehamzaahmed
32150

Top Contributers

1
userNamelinuxhelp
31040

Top Contributers

userNamemuhammadali
24500
Can you help Isaac ?
How to run windows application in linux

I need to run the windows application in my Linux machine, instead of installing from yum repo or any other repos. How to do that..??

Networking
  • Routing
  • trunk
  • Netmask
  • Packet Capture
  • domain
  • HTTP Proxy
Server Setup
  • NFS
  • KVM
  • Memory
  • Sendmail
  • WebDAV
  • LXC
Shell Commands
  • Cloud commander
  • Command line archive tools
  • last command
  • Shell
  • terminal
  • Throttle
Desktop Application
  • Linux app
  • Pithos
  • Retrospect
  • Scribe
  • TortoiseHg
  • 4Images
Monitoring Tool
  • Monit
  • Apache Server Monitoring
  • EtherApe 
  • Arpwatch Tool
  • Auditd
  • Barman
Web Application
  • Nutch
  • Amazon VPC
  • FarmWarDeployer
  • Rukovoditel
  • Mirror site
  • Chef
Contact Us | Terms of Use| Privacy Policy| Disclaimer
© 2025 LinuxHelp.com All rights reserved. Linux™ is the registered trademark of Linus Torvalds. This site is not affiliated with linus torvalds in any way.