cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
513
Views
0
Helpful
4
Replies

DoS on cisco PIX 500 series and ASA 5500 series

marie-pongou
Level 1
Level 1

Hello,

I fund a www-site http://www.searchsecurity.de/themenkanaele/plattformsicherheit/schwachstellenmanagement/allgemein/articles/106752/ (only German). I read that it is possible to do a DoS on cisco PIX 500 series and series 5500 ASA, when the TTL is enable.

How I can check that? or resolve the Problem?

thank,

Marie

2 Accepted Solutions

Accepted Solutions

What version of code are you running the Pix or ASA. Refer the "Affected Products" section for details on the affected products and versions. This should point you in the right direction.

Also, listed in the URL is Workarounds and Fixed Versions that you may want to check.

Regards,

Arul

View solution in original post

Yes, if you run the command "ASA#show running-config | include decrement-ttl" and do not see TTL Enabled, then you are not affected.

Regards,

Arul

View solution in original post

4 Replies 4

What version of code are you running the Pix or ASA. Refer the "Affected Products" section for details on the affected products and versions. This should point you in the right direction.

Also, listed in the URL is Workarounds and Fixed Versions that you may want to check.

Regards,

Arul

I have a PIX 515 version 7.22 and ASA 5520 version 7.22.

I see that the decrement-ttl is not enable. It is Ok.

Best Regards

Marie

Yes, if you run the command "ASA#show running-config | include decrement-ttl" and do not see TTL Enabled, then you are not affected.

Regards,

Arul

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card