<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>Cisco Bug DiscussionsのトピックCSCvh25988 - Cisco Secure Access Control System Java Deserialization Vulnerability - 1</title>
    <link>https://community.cisco.com/t5/cisco-bug-discussions/cscvh25988-cisco-secure-access-control-system-java/m-p/3347606#M6773</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I would like to know if these bug just apply for ACS version 5.8.x.x or it also apply for ACS version 5.1.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thank you in advance&lt;/P&gt;</description>
    <pubDate>Thu, 21 Mar 2019 04:58:58 GMT</pubDate>
    <dc:creator>avelino01</dc:creator>
    <dc:date>2019-03-21T04:58:58Z</dc:date>
    <item>
      <title>CSCvh25988 - Cisco Secure Access Control System Java Deserialization Vulnerability - 1</title>
      <link>https://community.cisco.com/t5/cisco-bug-discussions/cscvh25988-cisco-secure-access-control-system-java/m-p/3347606#M6773</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I would like to know if these bug just apply for ACS version 5.8.x.x or it also apply for ACS version 5.1.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thank you in advance&lt;/P&gt;</description>
      <pubDate>Thu, 21 Mar 2019 04:58:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-bug-discussions/cscvh25988-cisco-secure-access-control-system-java/m-p/3347606#M6773</guid>
      <dc:creator>avelino01</dc:creator>
      <dc:date>2019-03-21T04:58:58Z</dc:date>
    </item>
    <item>
      <title>Re: CSCvh25988 - Cisco Secure Access Control System Java Deserialization Vulnerability - 1</title>
      <link>https://community.cisco.com/t5/cisco-bug-discussions/cscvh25988-cisco-secure-access-control-system-java/m-p/3347869#M6780</link>
      <description>&lt;P&gt;Read this:&amp;nbsp; &lt;A href="https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180307-acs2" target="_self"&gt;Cisco Secure Access Control System Java Deserialization Vulnerability&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;The bug affects everything from 5.8 patch 9 and below/earlier.&amp;nbsp; The fix is found in&amp;nbsp;&lt;A href="https://software.cisco.com/download/release.html?mdfid=286286338&amp;amp;flowid=83475&amp;amp;softwareid=282766937&amp;amp;release=5.8.0.32&amp;amp;relind=AVAILABLE&amp;amp;rellifecycle=&amp;amp;reltype=latest" target="_blank"&gt;Cisco Secure ACS 5.8.0.32.9 Cumulative Patch&lt;/A&gt;.&lt;/P&gt;</description>
      <pubDate>Tue, 13 Mar 2018 19:20:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-bug-discussions/cscvh25988-cisco-secure-access-control-system-java/m-p/3347869#M6780</guid>
      <dc:creator>Leo Laohoo</dc:creator>
      <dc:date>2018-03-13T19:20:38Z</dc:date>
    </item>
    <item>
      <title>Re: CSCvh25988 - Cisco Secure Access Control System Java Deserialization Vulnerability - 1</title>
      <link>https://community.cisco.com/t5/cisco-bug-discussions/cscvh25988-cisco-secure-access-control-system-java/m-p/3347884#M6781</link>
      <description>&lt;P&gt;Leo&lt;/P&gt;
&lt;P&gt;Thank you&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;so, should I upgrade my version 5.1 for 5.8.0.32.9?&lt;/P&gt;</description>
      <pubDate>Tue, 13 Mar 2018 20:52:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-bug-discussions/cscvh25988-cisco-secure-access-control-system-java/m-p/3347884#M6781</guid>
      <dc:creator>avelino01</dc:creator>
      <dc:date>2018-03-13T20:52:39Z</dc:date>
    </item>
    <item>
      <title>Re: CSCvh25988 - Cisco Secure Access Control System Java Deserialization Vulnerability - 1</title>
      <link>https://community.cisco.com/t5/cisco-bug-discussions/cscvh25988-cisco-secure-access-control-system-java/m-p/3350673#M6825</link>
      <description>&lt;P&gt;Hello all,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have seen in previous post that the impacted equipment are all releases of Cisco Secure ACS prior to release 5.8 patch 9" but why in bug CSCvh25988 we only see "Cisco Secure Access Control Server Solution Engine 5.2(0.3)" is affected?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 19 Mar 2018 09:17:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-bug-discussions/cscvh25988-cisco-secure-access-control-system-java/m-p/3350673#M6825</guid>
      <dc:creator>seris</dc:creator>
      <dc:date>2018-03-19T09:17:21Z</dc:date>
    </item>
    <item>
      <title>Re: CSCvh25988 - Cisco Secure Access Control System Java Deserialization Vulnerability - 1</title>
      <link>https://community.cisco.com/t5/cisco-bug-discussions/cscvh25988-cisco-secure-access-control-system-java/m-p/3350712#M6826</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/108421"&gt;@avelino01&lt;/a&gt; wrote:&lt;BR /&gt;
&lt;P&gt;should I upgrade my version 5.1 for 5.8.0.32.9?&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;Not my call.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We are in the same boat.&amp;nbsp; Ours is at 5.4.&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The Release Notes states that it is not an easy exercise to upgrade from 5.1 and then to 5.8.0.32.X.&amp;nbsp; One must upgrade all the patches first before going to 5.2.&amp;nbsp; Install the patches and upgrade to the next version, etc. etc. etc.&amp;nbsp; So for us, we decided to migrate to ISE instead.&lt;/P&gt;</description>
      <pubDate>Mon, 19 Mar 2018 09:54:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-bug-discussions/cscvh25988-cisco-secure-access-control-system-java/m-p/3350712#M6826</guid>
      <dc:creator>Leo Laohoo</dc:creator>
      <dc:date>2018-03-19T09:54:30Z</dc:date>
    </item>
  </channel>
</rss>

