Cisco Firewall Services Module ICMP Packet Remote Denial of Service Vulnerability
BID:36085
Info
Cisco Firewall Services Module ICMP Packet Remote Denial of Service Vulnerability
| Bugtraq ID: | 36085 |
| Class: | Unknown |
| CVE: |
CVE-2009-0638 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 19 2009 12:00AM |
| Updated: | Aug 21 2009 03:54PM |
| Credit: | The vendor disclosed this issue. |
| Vulnerable: |
Cisco Firewall Services Module (FWSM) 3.2 (2) Cisco Firewall Services Module (FWSM) 3.1(6) Cisco Firewall Services Module (FWSM) 3.1(4) Cisco Firewall Services Module (FWSM) 3.1(3.24) Cisco Firewall Services Module (FWSM) 3.1(1.9) Cisco Firewall Services Module (FWSM) 3.1(1.7) Cisco Firewall Services Module (FWSM) 3.1 (3.3) Cisco Firewall Services Module (FWSM) 3.1 (3.2) Cisco Firewall Services Module (FWSM) 3.1 (3.18) Cisco Firewall Services Module (FWSM) 3.1 (3.11) Cisco Firewall Services Module (FWSM) 3.1 (3.1) Cisco Firewall Services Module (FWSM) 3.1 Cisco Firewall Services Module (FWSM) 2.3(5) Cisco Firewall Services Module (FWSM) 2.3(4.7) Cisco Firewall Services Module (FWSM) 2.3(4.12) Cisco Firewall Services Module (FWSM) 2.3(4) Cisco Firewall Services Module (FWSM) 2.3 (4.12) Cisco Firewall Services Module (FWSM) 2.3 |
| Not Vulnerable: |
Cisco Firewall Services Module (FWSM) 4.0 (6) Cisco Firewall Services Module (FWSM) 3.2(13) Cisco Firewall Services Module (FWSM) 3.1(16) |
Discussion
Cisco Firewall Services Module ICMP Packet Remote Denial of Service Vulnerability
Cisco Firewall Services Module (FWSM) is prone to a remote denial-of-service vulnerability.
Attackers can exploit this issue to cause the vulnerable module to fail to respond to further traffic, resulting in a denial-of-service condition.
This issue is tracked by Cisco Bug ID CSCsz97207.
This issue affects Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers devices running FWSM *prior to* the following:
FWSM 3.1(16)
FWSM 3.2(13)
FWSM 4.0(6)
Cisco Firewall Services Module (FWSM) is prone to a remote denial-of-service vulnerability.
Attackers can exploit this issue to cause the vulnerable module to fail to respond to further traffic, resulting in a denial-of-service condition.
This issue is tracked by Cisco Bug ID CSCsz97207.
This issue affects Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers devices running FWSM *prior to* the following:
FWSM 3.1(16)
FWSM 3.2(13)
FWSM 4.0(6)
Exploit / POC
Cisco Firewall Services Module ICMP Packet Remote Denial of Service Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Cisco Firewall Services Module ICMP Packet Remote Denial of Service Vulnerability
Solution:
The vendor has released fixes. Please see the references for details.
Solution:
The vendor has released fixes. Please see the references for details.
References
Cisco Firewall Services Module ICMP Packet Remote Denial of Service Vulnerability
References:
References:
- Cisco Applied Mitigation Bulletin: Identifying and Mitigating Exploitation of th (Cisco)
- Cisco Catalyst 6500 Series Firewall Services Module (Cisco)
- Cisco Security Advisory: Firewall Services Module Crafted ICMP Message Vulnerabi (Cisco Systems Product Security Incident Response Team
) - Firewall Services Module Crafted ICMP Message Vulnerability (Cisco)