cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
375
Views
0
Helpful
1
Replies

Multiple Vulnerabilities in Cisco ASA Software - Adivisory ID

Hello,

looking at this advisory: http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20141008-asa, in Software Versions and Fixes table all fixes releases are interim ones while mine is an ED release (9.1.5). Do you think I have to upgrade to the adviced interim release 9.1(5.12) ?

 

Thanks

1 Accepted Solution

Accepted Solutions

Marvin Rhoads
Hall of Fame
Hall of Fame

If you're running a 5500 series and require a fix now then, yes - 9.1(5.12) is the version you should upgrade to.

You could also examine each vulnerability for applicability to your configuration and either decide it is not applicable or critical and/or implement compensating controls outside the ASA itself.

Finally, you could also accept the risk and leave your system unpatched.

View solution in original post

1 Reply 1

Marvin Rhoads
Hall of Fame
Hall of Fame

If you're running a 5500 series and require a fix now then, yes - 9.1(5.12) is the version you should upgrade to.

You could also examine each vulnerability for applicability to your configuration and either decide it is not applicable or critical and/or implement compensating controls outside the ASA itself.

Finally, you could also accept the risk and leave your system unpatched.

Review Cisco Networking for a $25 gift card