漏洞信息详情
Cisco AsyncOS 安全漏洞
漏洞简介
Cisco AsyncOS是美国思科(Cisco)公司的一款应用于思科设备的操作系统。
Cisco AsyncOS for Cisco Web Security Appliance存在安全漏洞,该漏洞源于受影响设备的代理服务的内存管理不当造成的。攻击者可以通过与受影响的设备建立大量HTTPS连接来利用该漏洞。如果攻击成功,攻击者可利用该漏洞可能会导致系统停止处理新连接,从而导致拒绝服务攻击。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wsa-dos-fmHdKswk
参考网址
来源:CISCO
链接:https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wsa-dos-fmHdKswk
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/Cisco-Web-Security-Appliance-overload-via-Proxy-Service-36607
来源:www.cybersecurity-help.cz
链接:https://www.cybersecurity-help.cz/vdb/SB2021100701
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.3323
来源:tools.cisco.com
链接:https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wsa-dos-fmHdKswk
来源:nvd.nist.gov
链接:https://nvd.nist.gov/vuln/detail/CVE-2021-34698
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.3323.2
受影响实体
暂无
补丁
- Cisco AsyncOS 安全漏洞的修复措施<!--2021-10-6-->
还没有评论,来说两句吧...