Your review has been sent successfully

Cisco Updates

2817
Classification
These posts contain security alerts, including digital loopholes, electronic attacks, technical updates, and they are classified base on the level of severity.

Critical

High

Medium

Low

Warning Date

Severity Level

Warning Number

Target Sector

27 September, 2020

● High

2020-1839

All

Description:

Cisco has released security updates to address several vulnerabilities in the following products:

  • Cisco IOS XE Software
  • Cisco IOS
  • 4000 Series Integrated Services Routers
  • ASR 920 Series Aggregation Services Routers
  • ASR 1000 Series Aggregation Services Routers
  • cBR-8 Converged Broadband Routers
  • Cisco Industrial Ethernet (support PROFINET):
    • 2520 Connected Grid Switches
    • Catalyst IE3200 Rugged Series Switches
    • Catalyst IE3300 Rugged Series Switches
    • Catalyst IE3400 Rugged Series Switches
    • Catalyst IE3400 Heavy Duty Series Switches
    • Embedded Services 2020 Series Switches
    • Embedded Services 3300 Series Switches
    • Industrial Ethernet 1000 Series Switches
    • Industrial Ethernet 2000 Series Switches
    • Industrial Ethernet 2000U Series Switches
    • Industrial Ethernet 3000 Series Switches
    • Industrial Ethernet 3010 Series Switches
    • Industrial Ethernet 4000 Series Switches
    • Industrial Ethernet 4010 Series Switches
    • Industrial Ethernet 5000 Series Switches
  • Cisco Catalyst 9800 Series Wireless Controllers
  • 1000 Series Integrated Services Routers
  • 1100 Series Industrial Integrated Services Routers
  • 1100 Terminal Services Gateways
  • 4221 Integrated Services Routers
  • 4300 Series Integrated Services Routers
  • Catalyst 9800-L and 9800-CL Wireless Controllers (no other models are affected)
  • Cloud Services Router 1000V Series
  • ESR6300 Embedded Series Routers
  • Integrated Services Virtual Routers
  • VG400 Analog Voice Gateways
  • Catalyst 9800 Series Wireless Controllers
  • Wireless LAN Controllers (WLC)
  • Cisco Catalyst 9200 Series Switches
  • Cisco ASR 900 Series Aggregation Services Routers
  • Cisco IOS XE Wireless Controller Software for the Cisco Catalyst 9000 Family
  • Cisco cBR-8 Converged Broadband Routers
  • Cisco ASR 1000 Series Aggregation Services Routers
  • Catalyst 9800 Embedded Wireless Controller for Catalyst 9300, 9400, and 9500 Series Switches
  • Catalyst 9800 Series Wireless Controllers
  • Embedded Wireless Controller on Catalyst 9100 Access Points
  • Aironet 1540 Series APs
  • Aironet 1560 Series APs
  • Aironet 1800 Series APs
  • Aironet 2800 Series APs
  • Aironet 3800 Series APs
  • Aironet 4800 APs
  • Business 100 Series APs and Mesh Extenders
  • Business 200 Series APs
  • Catalyst 9100 APs
  • Catalyst IW 6300 APs
  • ESW6300 Series Aps
  • Integrated Access Point on 1100 Integrated Services Routers
  • Cisco Catalyst 9200 Series Switches
  • Cisco 4461 Integrated Services Routers
  • Cisco Catalyst 9300 Series Switches
  • Cisco Catalyst 9500 Series Switches

Threats:

Attacker could exploit these vulnerabilities by doing the following:

  • Code execution
  • Denial of service attack (DoS)
  • Bypass of a protection mechanism
  • Escalation of privilege
  • Information disclosure

Best practice and Recommendations:

The CERT team encourages users to review Cisco security advisory and apply the necessary updates:

Last updated at 27 September, 2020

Rate the content

rate-icon
up icon