FYI...
Cisco ASA and PIX multiple vulns
-
http://secunia.com/advisories/31730/
Release Date: 2008-09-04
Critical: Moderately critical
Impact: Exposure of sensitive information, DoS
Where: From remote
Solution Status: Vendor Patch
OS: Cisco Adaptive Security Appliance (ASA) 7.x, Cisco Adaptive Security Appliance (ASA) 8.x, Cisco PIX 7.x, Cisco PIX 8.x
...The vulnerability is reported in Cisco ASA devices running software versions 8.0 or 8.1 with clientless VPNs enabled. Cisco ASA devices that run software versions 7.0, 7.1, or 7.2 are not affected.
Solution: Update to fixed versions (please see the vendor's advisory for details).
Provided and/or discovered by: Reported by the vendor.
Original Advisory: Cisco:
http://www.cisco.com...80903-asa.shtml
-
http://nvd.nist.gov/...e=CVE-2008-2732
-
http://nvd.nist.gov/...e=CVE-2008-2733
-
http://nvd.nist.gov/...e=CVE-2008-2734
-
http://nvd.nist.gov/...e=CVE-2008-2735
-
http://nvd.nist.gov/...e=CVE-2008-2736
//
Cisco Secure ACS EAP DoS
-
http://secunia.com/advisories/31731/
Release Date: 2008-09-04
Critical: Less critical
Impact: DoS
Where: From local network
Solution Status: Vendor Patch
OS: Cisco Secure ACS Solution Engine 3.x, Cisco Secure ACS Solution Engine 4.x ...
Solution: Apply patches. Please see the vendor advisory for details...
Original Advisory: Cisco:
http://www.cisco.com...903-csacs.shtml
-
http://nvd.nist.gov/...e=CVE-2008-2441