, The Register 2005-09-08
Cisco has warned of a vulnerability in its IOS Firewall Authentication Proxy which might be used by hackers to launch denial of service attacks against vulnerable systems. The vulnerability stems from a software bug in processing user authentication credentials which might be exploited to cause a buffer overflow.
The vulnerability applies to various versions of Cisco IOS 12.x. An advisory from Cisco provides a matrix explaining how users can get software updates to guard against possible attack. A US-CERT advisory gives a more concise overview of the problem which security notification firm Secunia rates as moderately critical. ®
