Date: Fri, 18 Jul 2003 19:46:36 -0400 (EDT)
From: Cisco TAC <TAC_newsflash@tac1.ciscomessage.com.>
To: [email protected]Subject: Cisco Security Advisory and Workaround
-----------------------------------------
Cisco(R) Technical Assistance Center
News Flash - July 18, 2003
http://www.cisco.com/tac
-----------------------------------------
Cisco Security Advisory: Cisco IOS(R) Interface Blocked
by IPv4 Packets: Free Software Available To Correct the Problem
-----------------------------------------
Cisco routers and switches running Cisco IOS software and configured
to process Internet Protocol version 4 (IPv4) packets are vulnerable
to a Denial of Service (DoS) attack. Multiple IPv4 packets with
specific protocol fields sent directly to the device may cause the
input interface to stop processing traffic once the input queue is
full. No authentication is required to process the inbound packet.
Processing of IPv4 packets is enabled by default. Devices running
only IP version 6 (IPv6) are not affected.
Cisco has made software available, free of charge, to correct the
problem.
We recommend that you follow the instructions in this workaround
to protect your networks:
http://tac1.ciscomessage.com/cgi-bin3/DM/y/eRpb0FF5760HEu0BBSN0AW
For more details, including instructions for obtaining fixed software,
read the complete security advisory at:
http://tac1.ciscomessage.com/cgi-bin3/DM/y/eRpb0FF5760HEu0BBSD0AM
-----------------------------------------
SUBSCRIBE OR UNSUBSCRIBE:
To subscribe to or unsubscribe from Cisco TAC News mailings, visit:
http://www.cisco.com/tac/newsletter/signup
You may also unsubscribe by responding to this e-mail message and
typing "UNSUBSCRIBE" in the subject heading.
-----------------------------------------
FORGET YOUR USER ID OR PASSWORD?
Your user ID is usually your first initial followed by your
last name; for example, John Doe's user ID might be "jdoe."
If you can't remember your password, send a blank e-mail message
to mailto:cco-locksmith@cisco.com.. An automatic check will verify
that your e-mail address is registered with Cisco.com. Account
details with a new random password will be sent in e-mail to you.
-----------------------------------------
UPDATE YOUR PROFILE:
When you update your Cisco TAC News subscription profile, you can
change your e-mail address and subscribe to receive News Flashes
for particular technology areas:
http://www.cisco.com/tac/newsletter/signup
-----------------------------------------
ATTACHMENTS AND VIRUSES:
To help prevent the spread of computer viruses, we never send
Cisco TAC Newsletters and News Flashes with attachments, although
some mail clients such as AOL might recognize embedded pictures as
attachments. We always send Cisco TAC News e-mails from valid Cisco
domains (cisco.com or ciscomessage.com), and we encourage you to run
updated virus-scanning software on your computer systems whenever
you are connected to the Internet.
-----------------------------------------
PRIVACY POLICY:
Based on our existing business relationship with you, we use an e-mail
delivery vendor to send messages like this one. We use pixel tags in
e-mail messages in conjunction with cookies to help us determine if
our communications are useful to readers like you.
To see the privacy policy governing how Cisco collects and uses your
personal information, visit:
http://www.cisco.com/public/privacy.html
-----------------------------------------
Copyright (C) 2003 Cisco Systems, Inc. All rights reserved. Cisco,
Cisco Systems, the Cisco Systems logo, Cisco IOS, and IOS are
registered trademarks or trademarks of Cisco Systems, Inc. and/or
its affiliates in the U.S. and certain other countries. All other
trademarks mentioned in this document or Web site are the property
of their respective owners. The use of the word partner does not
imply a partnership relationship between Cisco and any other company.
(0303R)
You are subscribed at: [email protected]
t4