首页 / 操作系统 / Linux / Cisco Secure Access Control System远程拒绝服务漏洞(CVE-2013-5470)
发布日期:2013-09-03 更新日期:2013-09-06受影响系统: Cisco Secure Access Control System 5.x 描述: -------------------------------------------------------------------------------- BUGTRAQ ID: 62145 CVE(CAN) ID: CVE-2013-5470Cisco Secure Access Control System是访问策略控制平台。Cisco Secure Access Control System 5.4(0.46.2)在处理TACACS+套接字上的读请求时存在错误,未经身份验证的远程攻击者通过向受影响ACS服务器发送畸形TCP报文,利用此漏洞可造成运行时进程崩溃。<*来源:Cisco
链接:http://secunia.com/advisories/54687/ http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-5470 *>建议: -------------------------------------------------------------------------------- 厂商补丁:Cisco ----- Cisco已经为此发布了一个安全公告(CVE-2013-5470)以及相应补丁: CVE-2013-5470:Cisco Secure Access Control System Malformed Packet Denial of Service Vulnerability 链接:http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-5470ansible不安全临时文件创建漏洞(CVE-2013-4259)Cisco WebEx ARF Player内存破坏漏洞(CVE-2013-1115)相关资讯 Cisco安全漏洞
Cisco Prime Data Center Network (09/23/2013 05:34:39)
Cisco WebEx ARF Player内存破坏漏 (09/06/2013 13:42:59)
Cisco VC220/VC240 Network (08/03/2013 14:33:33)
Cisco Prime Data Center Network (09/22/2013 18:17:00)