Preview Tool

Cisco Bug: CSCvy11445 - Evaluation of wsa for name:wreck tcp stack vulnerability vulnerability

Last Modified

Jun 15, 2021

Products (1)

  • Cisco IronPort Web Security Appliance Software

Known Affected Releases


Description (partial)

This bug has been filed to evaluate the product against the NAME:WRECK vulnerability affecting FreeBSD disclosed on April 12th 2021 and identified by CVE IDs:

CVE-2020-7461 buffer overflow in FreeBSD dhclient

Cisco has evaluated the impact of the vulnerability on this product and concluded that it is affected.

DHCP needs to be enabled for the device to be vulnerable
Bug details contain sensitive information and therefore require a account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.