Release date:
Updated on:
Affected Systems:
Cisco IOS 15.1-15.4
Description:
--------------------------------------------------------------------------------
CVE (CAN) ID: CVE-2014-2111
Cisco IOS is an interconnected network operating system used on most Cisco system routers and network switches.
The Application Layer Gateway ALG module in Cisco IOS 15.1-15.4 has a security vulnerability. unauthenticated remote attackers can exploit this vulnerability to overload affected devices and cause denial of service (memory depletion ).
<* Source: vendor
Link: http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140326-nat
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Cisco
-----
Cisco has released a Security Bulletin (cisco-sa-20140326-nat) and patches for this:
Cisco-sa-20140326-nat: Cisco IOS Software Network Address Translation Vulnerabilities
Link: http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140326-nat