- Cisco Security Advisory: Crafted IP Option Vulnerability, the most serious of the three. Read his Cisco Applied Intelligence Response to learn more about using interface ACLs to protect your equipment.
- Cisco Security Advisory: Crafted TCP Packet Can Cause Denial of Service, a very ambiguous advisory.
- Cisco Security Advisory: IPv6 Routing Header Vulnerability, a little less ambiguous.
If you run a network, review these and start updating your devices or, if you run an old and unsupported train, disable features or block traffic against those interfaces. Luckily traffic transiting the device wont affect it.While various people are upset with Cisco for not disclosing vulnerability details, imagine the tightrope you have to walk disclosing how to defend against such an attack or detect it (ie with an IDS signature) when you represent a company with as critical an infrastructure role as Cisco’s. Tempers don’t appear to be too inflamed, however, and people seem to understand this predicament.