|
|
Article: In brief: Cisco remote-access gear vulnerable to DoS.(Cisco VPN 3000 Concentrator)(ChoicePoint Inc. paid fine to Federal Trade Commission)(CA Inc. promoted Mark Barrenechea )
- Article from:
- Network World
- Article date:
- January 30, 2006
CopyrightCOPYRIGHT 2006 Network World, Inc. This material is published under license from the publisher through the Gale Group, Farmington Hills, Michigan. All inquiries regarding rights should be directed to the Gale Group. (Hide copyright information)
|
Organizations running certain Cisco VPN gear may be susceptible to a remote denial-of-service attack that could knock
out network connections for teleworkers or traveling employees accessing a corporate network through the Internet. A flaw
in the Cisco VPN 3000 Concentrator could cause the device to reload or drop user connections if an attacker sends a specially
crafted HTTP packet to the device, the vendor says.
A software upgrade is required to avoid the vulnerability, and several workarounds can be used to thwart potential attacks.
Cisco VPN 3000 concentrators are devices that terminate encrypted connections for remote ...