Fragmented IP packets may be used to evade signature inspection, according to a warning on Cisco's Web site. It also warned that the IPS signatures using the regular expression feature of the Atomic.TCP signature engine may cause a router to crash, resulting in a denial of service.
Four versions of Cisco IOS are vulnerable to the fragmented packet evasion vulnerability: Version 12.4, 12.4T, 12.4XE, and at least one release of 12.3T. Many of the IOS version releases are vulnerable to the Atomic.TCP regular expression denial of service flaw.
An alert on the SANS Institute's Internet Storm Center recommends an upgrade of the IOS version.
Stay connected and informed by visiting the CA Solutions Center Community!

Become a member today for instant access to free InformationWeek research, expert advice, peer perspectives, and more on the following topics:
- Application Performance Management (APM)
- Security Management
- Mainframe 2.0
- IT Automation
- Service Assurance
Also, visit our Government and Financial Services groups to see how these technologies apply specifically to those industries.
NOTE: Offer valid for U.S., U.S. possessions, & Canada only.