[nsp] new IOS vulnerability

joshua sahala joshua.ej.smith at usa.net
Thu Jul 17 00:00:09 EDT 2003


On Wednesday 16 July 2003 22:35, Edward Henigin wrote:
> You might think that Cisco's field notices would have the update
> as soon as it comes out:
[cut]

you'd think, but the software advisory is usually out of synch with 
the upgrade planner, etc...

something sent to nanog might be of use (for those of you whom are 
subscribed to both lists, sorry for the duplicate)

"i have no details regarding the ios vulnerability other than what has 
already been stated on-list, but the IOS matrix obtained this evening 
and listed at http://www.0ptical.net/cisco.html  shows what versions 
are affected, and what to upgrade to resolve the mystery issue. not 
sure why psirt is keeping this under wraps, since most NSPs are 
publicly scheduling "emergency upgrades" to fix "network problems" 
that arent being detailed to customers, and those same customers can 
and will be affected by the same problem."

/joshua

-- 
What difference does it make to the dead, the orphans, and the 
homeless, whether the mad destruction is brought under the name of 
totalitarianism or the holy name of liberty and democracy?

 - Gandhi -




More information about the cisco-nsp mailing list