[ news_security_news ] Cisco Patches DOS Vulnerability
SecurityProNews Staff Writer
2005-01-25
Insider Reports RSS Feed
Cisco reported a vulnerability to DOS attacks on routers that run certain telephony features that are a part of Internetwork Operating Software (IOS).
OS software configured for the Cisco IOS Telephony Service (ITS), Cisco CallManager Express (CME) or Survivable Remote Site Telephony (SRST) phone systems contains the flaw.
In a statement on its website Cisco said a successful exploitation of the flaw "may cause a reload of the device which could be exploited repeatedly to produce a Denial of Service (DoS) attack".
"From a security standpoint, 2005 is the year that the router becomes the Achilles heel of the network," said DeepNines President and COO, Dan Jackson in a statement. "Where there's smoke, there's fire-meaning these won't be the last router vulnerabilities we hear about this year."
Cisco has issued a patch to solve the problem.
About the Author:
SecurityProNews is a daily online and email publication focusing on internet security issues.
More news_security_news Articles
Insider Reports RSS Feed
|
|