CVE-2009-0638: High severity Cisco Firewall Services Module vulnerability
The Cisco Firewall Services Module (FWSM) 2.x, 3.1 before 3.1(16), 3.2 before 3.2(13), and 4.0 before 4.0(6) for Cisco Catalyst 6500 switches and Cisco 7600 routers allows remote attackers to cause a denial of service (traffic-handling outage) via a series of malformed ICMP messages.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-0638?
CVE-2009-0638 has a severity rating that can lead to denial of service conditions on the affected Cisco devices.
How do I fix CVE-2009-0638?
To fix CVE-2009-0638, upgrade the Cisco Firewall Services Module to the latest version as indicated in the vendor's advisory.
What are the affected versions of Cisco Firewall Services Module for CVE-2009-0638?
CVE-2009-0638 affects versions 2.1, 2.2, 2.3, 3.1, 3.2, and 4.0 of the Cisco Firewall Services Module.
What types of attacks are possible due to CVE-2009-0638?
CVE-2009-0638 allows remote attackers to send malformed ICMP messages to cause a denial of service.
Is CVE-2009-0638 present in Cisco Catalyst 6500 and 7600 series routers?
Yes, CVE-2009-0638 affects the Cisco Firewall Services Module used in Catalyst 6500 and 7600 series routers.