A flaw in Cisco’s CatOS, which runs on Cisco Catalyst switches, could freeze TCP-based management services on the switch. A fix is available from Cisco’s Web site.
The vulnerability could allow an attacker to disable some management interfaces to a Catalyst switch. The flaw cannot be exploited to affect basic packet switching, according to the BugTraq security alert mailing list.
Upon receiving eight non-standard TCP flags (a series of send/receive messages involved in a standard TCP handshake), a Catalyst switch running CatOS will stop responding to TCP requests, according to Cisco and BugTraq. This will disable TCP services - such as Telnet, HTTP and Secure Sockets Layer (SSL) - on the box until it is rebooted. This would prevent a user from accessing the switch’s management interface via a Web GUI or Telnet command-line interface.
SNMP is not affected by the flaw and could still be used to access a compromised switch.
Switches affected by the CatOS flaw include Catalyst 4000, 5000 and 6000 switches. Cisco and Bug Traq said that only Catalyst chassis running CatOS, and not IOS software, are affected.
CatOS is Cisco’s base operating system software for its Catalyst switches - the most widely used LAN equipment in the market, according to many research firms. The software provides basic functions and services for LAN switches, such as quality of service, management and port configuration. Catalyst switches can also run Cisco’s IOS software to support more advanced services, such as routing, voice over IP support and other features.
This whitepaper explains the terminology and concepts behind Data Replication technologies and establishes some sizing rules through worked examples. Learn the new paradigm in disaster tolerance—protect data anywhere.
Download now »Server virtualization is a popular option for dealing with mounting datacenter costs. Another equally promising approach is the use of an Application Delivery Controller. Citrix NetScaler provides a low-cost way for organizations to reduce their server count and accrue cost savings from a reduction in space, cooling, power and personnel.
Download now »
The emergence of WLANs has created a new breed of security threats to enterprise networks.
Included in HP ProCurve WLAN solutions is security technology that alleviates threats from WLANs through:
* Monitoring wireless activity inside and out of the enterprise
* Classifying WLAN transmissions into harmful and harmless
* Preventing transmissions that pose a security threat to the enterprise network
* Locating participating devices for physical remediation
Effectively address data protection challenges, implementing solutions that help store and protect businesscritical data while cutting costs and improving efficiency and reliability.
Download now »
Sign up to receive Networking Resource Alerts
