[Full-disclosure] IRM Discover More Vulnerabilities in Cisco IOS

2007-10-23 Thread Andy Davis
In the last three months IRM has discovered a total of 13 new security vulnerabilities in Cisco IOS. These vulnerabilities were reported to Cisco and have all been allocated PSIRT reference numbers while the root cause and potential impact of each is investigated. Cisco has taken all the

Re: [Full-disclosure] IRM Discover More Vulnerabilities in Cisco IOS

2007-10-23 Thread crazy frog crazy frog
good.we all know :) On 10/23/07, Andy Davis [EMAIL PROTECTED] wrote: In the last three months IRM has discovered a total of 13 new security vulnerabilities in Cisco IOS. These vulnerabilities were reported to Cisco and have all been allocated PSIRT reference numbers while the root cause and

Re: [Full-disclosure] IRM Discover More Vulnerabilities in Cisco IOS

2007-10-23 Thread reepex
Bug 1: The Line Printer Daemon, which provides print server functionality in Cisco IOS is vulnerable to a software flaw whereby the length of the hostname of the router is not checked before being copied into a fixed size memory buffer. . However, the attacker must be able to control the

Re: [Full-disclosure] IRM Discover More Vulnerabilities in Cisco IOS

2007-10-23 Thread full-disclosure
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 shut up pdp On Tue, 23 Oct 2007 14:31:52 -0400 reepex [EMAIL PROTECTED] wrote: Bug 1: The Line Printer Daemon, which provides print server functionality in Cisco IOS is vulnerable to a software flaw whereby the length of the hostname of the