Release Date: 2008-10-23
Critical:
Moderately critical
Impact: DoS
Where: From remote
Solution Status: Vendor Patch
OS: Cisco Adaptive Security Appliance (ASA) 7.x
Cisco PIX 7.x
Description:
A vulnerability has been reported in Cisco ASA and PIX appliances, which can be exploited by malicious people to cause a DoS (Denial of Service).
The vulnerability is caused due to an unspecified error in the processing of IPv6 packets and can be exploited to reload an affected device by sending specially crafted IPv6 packets to an IPv6 interface of the device.
Successful exploitation requires that the device is configured for IPv6.
The vulnerability is reported in version 7.2(4)9 and 7.2(4)10.
NOTE: 7.0, 7.1, 8.0, and 8.1 releases are reportedly not affected.
Solution:
Update to version 7.2(4)11.
Provided and/or discovered by:
Reported by the vendor.
Original Advisory:
Cisco:
http://www.cisco.com/warp/public/707/cisco-sa-20081022-asa.shtml
Cisco ASA Crypto Accelerator Memory Leak
Release Date: 2008-10-23
Critical:
Moderately critical
Impact: DoS
Where: From remote
Solution Status: Vendor Patch
OS: Cisco Adaptive Security Appliance (ASA) 8.x
Description:
A vulnerability has been reported in Cisco ASA appliances, which can be exploited by malicious people to cause a DoS (Denial of Service).
The vulnerability is caused due to a memory leak in the Crypto Accelerator. This can be exploited to cause a DoS by sending specially crafted packets to an affected device.
Solution:
Cisco ASA 8.0:
Update to version 8.0(4).
Cisco ASA 8.1:
Update to version 8.1(2).
Provided and/or discovered by:
Reported by the vendor.
Original Advisory:
Cisco:
http://www.cisco.com/warp/public/707/cisco-sa-20081022-asa.shtml

Chowhound
Comic Vine
GameFAQs
GameSpot
Giant Bomb
TechRepublic