Cisco's first Router Wednesday

Posted by stretch in News on Wednesday, 26 Mar 2008 at 5:34 p.m. GMT

Cisco published a set of IOS security vulnerabilities this afternoon, marking the first announcement day of its new disclosure schedule. Earlier this month Cisco had announced it would simplify its IOS security advisories by only publishing them on the fourth Wednesday in March and September each year. However, they claim advisories concerning a vulnerability for which exploit code is in the wild will not be held to this cycle.

The advisories published today include:

Network engineers in the community have expressed opinions both for and against Cisco's new publication schedule. Personally, I think it's ridiculous and naive to attempt to schedule security in any manner. A vulnerability should be resolved and published as soon as possible; intruders don't wait to attack when it's convenient for you.

Leave a comment

(optional, will not be published)
(optional)

Comment Tips

  • You can use Markdown syntax for decoration. (Cheat sheet)
  • Links: [Google](http://google.com) or <http://google.com>
  • Use backticks around commands: `ip address 127.0.0.1`
  • Use indentations (tabs) for preformatted text (code blocks)