08-16-2018 12:52 AM
Basic question regarding Bug Search Tool
In the Bug Search I can see:
Known Affected Releases: (1)
15.5(3)S
Does it mean that every SW version before 15.5(3)S is affected as well? Like for example version 15.0.(2)SE11 ? Or does it mean that only this sw version is affected?
Thanks in advance!
Solved! Go to Solution.
08-16-2018 03:24 AM - edited 08-16-2018 03:26 AM
@Lukas Runge wrote:
Why does Cisco publish that only one SW version is affected in the bug search tool?
A very important tip: Never, ever, trust information(s) found in Bug IDs.
Information found in Bug IDs are seldom accurate. Once it's published it is extremely (like pulling teeth from a hunger lion) difficult to get them updated. It is a lot easier to raise a TAC Case and get the correct information that way.
Security Bulletins/Advisory, however, are regularly updated (because they are viewed by wider audience).
@Lukas Runge wrote:
Cisco IOS - yes
authentication rsa-encr -> enabled
This means you "could be" vulnerable. I say "could be" because no known/reported exploit has (yet) been reported.
08-16-2018 06:23 PM
08-16-2018 01:09 AM
08-16-2018 01:13 AM
Hello @Leo Laohoo
I have read the vendor advisory, which states: This vulnerability affects Cisco IOS Software and Cisco IOS XE Software that is configured with the authentication rsa-encr option.
But my question is more kind of a basic uestion regarding the layout of the bug search. I need to know if only the indicated version is affected, or every version before that as well?
Thank you.
08-16-2018 01:14 AM
Hello @Leo Laohoo
I have read the vendor advisory, which states: This vulnerability affects Cisco IOS Software and Cisco IOS XE Software that is configured with the authentication rsa-encr option.
But my question is more kind of a basic uestion regarding the layout of the bug search. I need to know if only the indicated version is affected, or every version before that as well?
Thank you.
08-16-2018 01:38 AM
08-16-2018 03:00 AM
Hello @Leo Laohoo
Thank you for your answer. But if this is the case:
Cisco IOS - yes
&& authentication rsa-encr -> enabled
Why does Cisco publish that only one SW version is affected in the bug search tool?
08-16-2018 03:24 AM - edited 08-16-2018 03:26 AM
@Lukas Runge wrote:
Why does Cisco publish that only one SW version is affected in the bug search tool?
A very important tip: Never, ever, trust information(s) found in Bug IDs.
Information found in Bug IDs are seldom accurate. Once it's published it is extremely (like pulling teeth from a hunger lion) difficult to get them updated. It is a lot easier to raise a TAC Case and get the correct information that way.
Security Bulletins/Advisory, however, are regularly updated (because they are viewed by wider audience).
@Lukas Runge wrote:
Cisco IOS - yes
authentication rsa-encr -> enabled
This means you "could be" vulnerable. I say "could be" because no known/reported exploit has (yet) been reported.
08-16-2018 06:18 AM
Hi @Leo Laohoo,
me again. :)
Can you tell me the command to check if the authentication rsa-encr option is enabled?
sh run | i rsa ?
thanks in advance again
08-16-2018 06:22 AM
Hello @Leo Laohoo,
how can check if the authentication rsa-encr option is enabled?
(sh run | i rsa) ?
Thanks in advance,
Lukas
08-16-2018 06:23 PM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide