>> Cisco 11500 Content Services Switch SSL Certificate DoS Vulnerability
Title : Cisco 11500 Content Services Switch SSL Certificate DoS Vulnerability VUPEN ID : VUPEN/ADV-2005-2146 CVE ID : CVE-2005-3426
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2005-10-19
Technical Description
A vulnerability has been identified in Cisco 11500 Series Content Services Switches (CSS), which may be exploited by remote attackers to cause a denial of service. This issue is due to a memory corruption error when processing a malformed digital client certificate during the negotiation of a SSL session, which could be exploited by remote attackers to cause a denial of service.
Note : This issue is only present if a CSS is configured to support SSL termination services (not configured by default).