Number: AV18-138
Date: 15 August 2018
Purpose
The purpose of this advisory is to bring attention to multiple Cisco security advisories.
Assessment
Cisco released multiple security updates to address several vulnerabilities in various products.
Affected products:
- Cisco Adaptive Security Appliance Web Services
- Cisco Web Security Appliance Web Proxy
- Cisco Unified Communications Manager IM & Presence Service
- Cisco Web Security Appliance Web Proxy
- Cisco Small Business 100 Series and 300 Series Wireless Access Points
- Cisco Registered Envelope Service
- Cisco Email Security Appliance
- Cisco Digital Network Architecture Center
- Cisco Unified Communications Domain Manager
- Cisco Small Business 100 Series and 300 Series
- Cisco ASR 9000 Series Aggregation Services Routers
- Cisco Products Linux Kernel
CVE References:
CVE-2016-5195, CVE-2018-0296, CVE-2018-0367, CVE-2018-0386, CVE-2018-0409, CVE-2018-0410, CVE-2018-0412, CVE-2018-0415, CVE-2018-0418, CVE-2018-0419, CVE-2018-0427, CVE-2018-0428
Suggested Action
CCIRC recommends that system administrators test and deploy the vendor-released updates to affected applications accordingly.
References:
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180606-asaftd
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180815-wsa-dos
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180815-ucmimps-dos
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180815-wsa-escalation
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180815-sb-wap-encrypt
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180815-res-xss
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180815-esa-file-bypass
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180815-dna-injection
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180815-cucdm-xss
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180815-csb-wap-dos
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180815-asr-ptp-dos
- http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161026-linux