Risk: Medium
Cisco recently announced they were moving to a biannual patch cycle. Cisco has released five updates for their IOS software.
The vulnerabilities reported may be exploited by malicious people to disclose sensitive information, manipulate certain data, or to cause a DoS.
A memory leak in the handling of completed PPTP sessions has been identified, a vulnerability has been reported in the Data-Link-Switching (DLSw) feature when processing UDP and IP protocol 91 packets. An error exists in the processing of IPv6 packets and in the implementation of Multicast Virtual Private Networks (MVPN).
Users are urged to update to the fixed version.