lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [day] [month] [year] [list]
Message-id: <201306261251.6.ngfw@psirt.cisco.com>
Date: Wed, 26 Jun 2013 12:51:45 -0400
From: Cisco Systems Product Security Incident Response Team <psirt@...co.com>
To: bugtraq@...urityfocus.com
Cc: psirt@...co.com
Subject: Cisco Security Advisory: Cisco ASA Next-Generation Firewall Fragmented Traffic Denial of Service Vulnerability

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Cisco Security Advisory:Cisco ASA Next-Generation Firewall Fragmented Traffic
Denial of Service Vulnerability

Advisory ID: cisco-sa-20130626-ngfw

http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/
cisco-sa-20130626-ngfw

Revision 1.0

For Public Release 2013 June 26 16:00  UTC (GMT)

+------------------------------------------------------------------------------

Summary
=======

Cisco ASA Next-Generation Firewall (NGFW) Services contains a Fragmented
Traffic Denial of Service (DoS) vulnerability. 

Successful exploitation of this vulnerability on the Cisco ASA NGFW could cause
the device to reload or stop processing user traffic that has been redirected
by the parent Cisco ASA to the ASA NGFW module for further inspection.

There are no workarounds for this vulnerability, but mitigations are available.

Cisco has released free software updates that address this vulnerability. This
advisory is available at the following link:

http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130626-ngfw

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)

iF4EAREIAAYFAlHKgaUACgkQUddfH3/BbTp0ZgD+NDv7SbR9LIjMwPDqFmjfAjhY
OSKWBWlunt8SOhDUbogA/jY0n25CWcbqKDlkUrbBNDXhXirk5TljKifNi2zHWH47
=KSS3
-----END PGP SIGNATURE-----

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ