<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic HelloPlease refer to Cisco in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5525-image-upgradation/m-p/2746952#M178077</link>
    <description>&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;Please refer to Cisco advisory&lt;/P&gt;&lt;P&gt;http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150408-asa&lt;/P&gt;&lt;P&gt;The one with the fix for this issue would be 9.2(3.4) or later&amp;nbsp;&lt;/P&gt;&lt;P&gt;In which the recommend one to run to fix all this issues would be 9.2(4)&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Rodrigo&lt;/P&gt;</description>
    <pubDate>Mon, 12 Oct 2015 04:31:29 GMT</pubDate>
    <dc:creator>rodrigog</dc:creator>
    <dc:date>2015-10-12T04:31:29Z</dc:date>
    <item>
      <title>ASA 5525 Image Upgradation</title>
      <link>https://community.cisco.com/t5/network-security/asa-5525-image-upgradation/m-p/2746951#M178076</link>
      <description>&lt;P&gt;Hi Experts,&lt;/P&gt;&lt;P&gt;Hope all is doing good.!&lt;/P&gt;&lt;P&gt;This time here for advice on&amp;nbsp;below points -&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1) We are using ASA 5525 , Recently during vulnerability assessment came to know with below observations and hence team recommended for Image upgradation.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The remote Cisco Adaptive Security Appliance (ASA) is missing a&lt;BR /&gt;vendor-supplied security patch and is therefore affected by the&lt;BR /&gt;following vulnerabilities :&lt;/P&gt;&lt;P&gt;&amp;nbsp; - A flaw exists in the failover ipsec feature due to not&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; properly handling failover communication messages. An&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; unauthenticated attacker, sending crafted UDP packets&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; over the local network to the failover interface, can&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; reconfigure the failover units to gain full control.&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; (CVE-2015-0675)&lt;/P&gt;&lt;P&gt;&amp;nbsp; - A flaw exists when handling DNS reply packets, which a&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; man-in-the-middle attacker, by triggering outbound DNS&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; queries and then sending crafted responses to these, can&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; exploit to consume excessive memory, leading to a denial&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; of service. (CVE-2015-0676)&lt;/P&gt;&lt;P&gt;&amp;nbsp; - A flaw exists in the XML Parser configuration when&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; handling specially crafted XML messages, which a remote,&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; unauthenticated attacker can use to crash the WebVPN&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; component, resulting in a denial of service condition.&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; (CVE-2015-0677)&lt;/P&gt;&lt;P&gt;Currently ASA is running with :-&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;ASA5512#sh ver&lt;/P&gt;&lt;P&gt;Cisco Adaptive Security Appliance Software Version 9.2(2)4&lt;BR /&gt;Device Manager Version 7.2(2)1&lt;/P&gt;&lt;P&gt;Compiled on Tue 29-Jul-14 23:41 PDT by builders&lt;BR /&gt;System image file is "disk0:/asa922-4-smp-k8.bin"&lt;BR /&gt;Config file at boot was "startup-config"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;NOte:- ASA 5525 (with VPN premium License)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could you pls recommend the latest and suitable image or solution to fix this observation.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Rgds&lt;/P&gt;&lt;P&gt;***&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 06:43:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5525-image-upgradation/m-p/2746951#M178076</guid>
      <dc:creator>netbeginner</dc:creator>
      <dc:date>2019-03-12T06:43:31Z</dc:date>
    </item>
    <item>
      <title>HelloPlease refer to Cisco</title>
      <link>https://community.cisco.com/t5/network-security/asa-5525-image-upgradation/m-p/2746952#M178077</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;Please refer to Cisco advisory&lt;/P&gt;&lt;P&gt;http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150408-asa&lt;/P&gt;&lt;P&gt;The one with the fix for this issue would be 9.2(3.4) or later&amp;nbsp;&lt;/P&gt;&lt;P&gt;In which the recommend one to run to fix all this issues would be 9.2(4)&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Rodrigo&lt;/P&gt;</description>
      <pubDate>Mon, 12 Oct 2015 04:31:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5525-image-upgradation/m-p/2746952#M178077</guid>
      <dc:creator>rodrigog</dc:creator>
      <dc:date>2015-10-12T04:31:29Z</dc:date>
    </item>
  </channel>
</rss>

