With Windows Azure and Microsoft Hyper-V support, WatchGuard continues to deliver powerful security for fast-growing cloud computing market
Monthly Archives: August 2013
CVE-2013-3470 (ios_xr)
The RIP process in Cisco IOS XR allows remote attackers to cause a denial of service (process crash) via a crafted version-2 RIP packet, aka Bug ID CSCue46731.
CVE-2013-3463 (adaptive_security_appliance, adaptive_security_appliance_software)
The protocol-inspection feature on Cisco Adaptive Security Appliances (ASA) devices does not properly implement the idle timeout, which allows remote attackers to cause a denial of service (connection-table exhaustion) via crafted requests that use an inspected protocol, aka Bug ID CSCuh13899.
CVE-2013-3467 (unified_computing_system_6120xp_fabric_interconnect, unified_computing_system_6140xp_fabric_interconnect)
Memory leak in the CLI component on Cisco Unified Computing System (UCS) 6100 Fabric Interconnect devices, in certain situations that lack a SPAN session, allows local users to cause a denial of service (memory consumption and device reset) via a (1) “show monitor session all” or (2) “show monitor session” command, aka Bug ID CSCug20103.
CVE-2013-5589 (cacti, debian_linux, opensuse)
SQL injection vulnerability in cacti/host.php in Cacti 0.8.8b and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
New WatchGuard XCS 880 Increases Content Security Performance by 20 Percent for Large Enterprises
CVE-2013-3460 (unified_communications_manager)
Memory leak in Cisco Unified Communications Manager (Unified CM) 8.5(x) before 8.5(1)su6, 8.6(x) before 8.6(2a)su3, and 9.x before 9.1(1) allows remote attackers to cause a denial of service (service disruption) via a high rate of UDP packets, aka Bug ID CSCub85597.
CVE-2013-3461 (unified_communications_manager)
Cisco Unified Communications Manager (Unified CM) 8.5(x) and 8.6(x) before 8.6(2a)su3 and 9.x before 9.1(1) does not properly restrict the rate of SIP packets, which allows remote attackers to cause a denial of service (memory and CPU consumption, and service disruption) via a flood of UDP packets to port 5060, aka Bug ID CSCub35869.
WatchGuard Partners with NCP engineering to Offer Premium IPsec VPN Client for Microsoft Windows and Apple OS X Users
CVE-2013-2901 (chrome, debian_linux)
Multiple integer overflows in (1) libGLESv2/renderer/Renderer9.cpp and (2) libGLESv2/renderer/Renderer11.cpp in Almost Native Graphics Layer Engine (ANGLE), as used in Google Chrome before 29.0.1547.57, allow remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.