On TV.com: 2009's Most PIRATED TV Show
BNET Business Network:
BNET
TechRepublic
ZDNet

By Ingrid Marson
Posted on ZDNet News: Aug 19, 2004 4:52:00 PM

Cisco has warned in a security advisory that some networks with its routers could be vulnerable to denial-of-service attacks.

The problem is in the processing of packets sent to a Cisco router that has been configured for the Open Shortest Path First (OSPF) protocol, the company said in a security advisory released Wednesday. If the router receives a malformed packet, it will take a while to reset. Attackers could flood networks with packets that cause routers to constantly reboot. The flaw is limited to versions 12.0S, 12.2 and 12.3 of Cisco's Internetwork Operating System routing software.

Jon Oltsik, a network security analyst at the Enterprise Strategy Group, said the vulnerable versions and configuration are in common use and that the effects of a successful attack could be devastating to an enterprise.


News.blog
Broadband
Our reporters' take on what's
happening in broadband.


"If a hacker puts a certain request to the main router, then it could shut down the whole network," Oltsik said. But he believes that in practice, the vulnerability requires both inside knowledge and Cisco expertise, which should limit the number of attacks. The most likely threat will come from former staff with a grievance, he said.

"It's not like a Microsoft vulnerability that anyone with Internet access can exploit. You need specific knowledge to exploit this. An attack is most likely to come from a rogue employee who knows the configuration of the company's Cisco routers," Oltsik said.

Cisco said Thursday that it's unaware of any exploitations of the vulnerability.

Cisco has provided a patch for the security flaw and has also provided several workarounds for the problem, such as using OSPF authentication as a workaround. It is also recommending that customers update their routers with a free software patch, available by e-mailing its support center at tac@cisco.com. The full Cisco advisory has been posted to its Web site.

Ingrid Marson of ZDNet UK reported from London. CNET News.com's Marguerite Reardon contributed to this report.

SponsoredWhite Papers, Webcasts, and Downloads

  • Talkback
  • Most Recent of 17 Talkback(s)
Does anything intelligent ever come out of your mouth?
Cisco uses IOS (Internetwork Operating System), their own runtime. There is 100% nothing MS about it.

You are a constant source of misinformation and you do more damage to the Linux community ... (Read the rest)
Posted by: balsover Posted on: 08/20/04 You are currently: a Guest | | Terms of Use
I know what could have prevented this  NonZealot | 08/19/04
WIN CE??!? WHO IS THE MENTAL MIDGET WHO PICKED THAT HEAP OF CRAP?  itanalyst | 08/19/04
?  rapson | 08/19/04
Ok I was not going to write anything but.... happy  computer_man | 08/19/04
If you're gonna be funny, get your facts straight  Xunil_Sierutuf | 08/19/04
m$hill detected  NonZealot | 08/19/04
Heh heh  rapson | 08/19/04
IOS Overhaul  BXLE | 08/19/04
Affects current IOS  UncleBubba | 08/19/04
Clueless Troll.  UncleBubba | 08/19/04
Does anything intelligent ever come out of your mouth?  balsover | 08/20/04
I hope it's not the same unemployed "techies" from the other article.  Xunil_Sierutuf | 08/19/04
Nice sentiments, but...  techboy_z | 08/19/04
Cisco IOS (Internetwork Operating System)  FilledOut | 08/19/04
Cisco's Proprietary OS  nikoli | 08/19/04
Do you have a Cisco Router?  UncleBubba | 08/19/04
Nope, it was a question to draw on the first poster  FilledOut | 08/20/04

What do you think?

advertisement
advertisement

White Papers, Webcasts, and Downloads

SmartPlanet

Click Here