IBM and Cisco battle remote attack vulnerabilities


IBM and Cisco battle remote attack vulnerabilities

Edmund X. DeJesus, Contributing Writer

Both IBM and Cisco are warning of vulnerabilities that remote attackers could exploit to cause denial of service and other problems. Administrators should apply available fixes to avoid security exposure.

IBM's HTTP Server is the latest victim of vulnerabilities due to OpenSSL flaws reported in November 2003. OpenSSL has flaws in handling invalid ASN.1 encodings that a remote attacker may leverage by using unusual ASN.1 tag values. The resulting deallocation of memory can allow denial of service and possible execution of arbitrary code.

The problem affects IBM HTTP Server versions 1.x and 2.x. IBM has provided fixes in the form of upgrades to version 1.3.x or 2.0.

A different vulnerability affects Cisco's Catalyst 6500 Series Switches and 7600 Series Internet Routers using the IP Security (IPSec) VPN Services Module (VPNSM). The VPNSM is a high-speed component that supplies infrastructure-integrated IPSec VPN services. Remote attackers using specially crafted Internet Key Exchange (IKE) packets can force the hardware to crash and reload, causing a denial of service.

The problem affects Cisco IOS versions 12.2SXA, 12.2SXB and 12.2SY using VPNSM. There are no workarounds to mitigate the problem, but Cisco is providing fixes. This issue with Cisco vulnerabilities is the latest of several in the past month.

Email Alerts

Register now to receive IT-related news, guides and more, delivered to your inbox.
By submitting your personal information, you agree to receive emails regarding relevant products and special offers from TechTarget and its partners. You also agree that your personal information may be transferred and processed in the United States, and that you have read and agree to the Terms of Use and the Privacy Policy.

COMMENTS powered by Disqus  //  Commenting policy