HP Cisco Catalyst Blade Switch 3020 Release Notes for the Cisco Catalyst Blade - Page 20

Documentation Updates - for getting started guide

Page 20 highlights

Documentation Updates Cisco IOS is affected by the following vulnerabilities: - Processing ClientHello messages, documented as Cisco bug ID CSCsb12598 - Processing ChangeCipherSpec messages, documented as Cisco bug ID CSCsb40304 - Processing Finished messages, documented as Cisco bug ID CSCsd92405 Cisco has made free software available to address these vulnerabilities for affected customers. There are workarounds available to mitigate the effects of these vulnerabilities. This advisory is posted at http://www.cisco.com/warp/public/707/cisco-sa-20070522-SSL.shtml. Note Another related advisory has been posted with this advisory. This additional advisory also describes a vulnerability related to cryptography that affects Cisco IOS. This related advisory is available at the following link: http://www.cisco.com/warp/public/707/cisco-sa-20070522-crypto.shtml. A combined software table for Cisco IOS is available to aid customers in choosing a software releases that fixes all security vulnerabilities published as of May 22, 2007. This software table is available at the following link: http://www.cisco.com/warp/public/707/cisco-sa-20070522-cry-bundle.shtml. • CSCsg18176 When dynamic ARP inspection is enabled and IP validation is disabled, the switch no longer drops ARP requests that have a source address of 0.0.0.0. • CSCsg30295 When you configure an IP address on a switch virtual interface (SVI) with DCHP and enable DHCP snooping on the SVI VLAN, the switch SVI now obtains an IP address. • CSCsh92834 When trunk ports are participating in a Flex Link configuration, entering a shutdown or no shutdown interface configuration command on the port no longer causes the switch to reload. • CSCsh92844 Online insertion and removal (OIR) of an SFP module no longer causes error-disabled ports to change to Up or Standby states, resulting in lost data. • CSCsi00879 When IGMP snooping is enabled, multicast traffic no longer is dropped after a port channel interface link flaps. • CSCsi30888 The switch no longer halts when configuring link-state tracking with EtherChannel downstream ports or when booting up a switch already configured with link-state tracking with EtherChannel downstream ports. Documentation Updates This section contains these documentation updates: • "Updates to Software Configuration Guide" section on page 21 • "Updates to Getting Started Guide" section on page 21 Release Notes for the Cisco Catalyst Blade Switch 3020 for HP, Cisco IOS Release 12.2(37)SE and Later 20 OL-12577-03

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22

20
Release Notes for the Cisco Catalyst Blade Switch 3020 for HP, Cisco IOS Release 12.2(37)SE and Later
OL-12577-03
Documentation Updates
Cisco IOS is affected by the following vulnerabilities:
Processing ClientHello messages, documented as Cisco bug ID CSCsb12598
Processing ChangeCipherSpec messages, documented as Cisco bug ID CSCsb40304
Processing Finished messages, documented as Cisco bug ID CSCsd92405
Cisco has made free software available to address these vulnerabilities for affected customers. There
are workarounds available to mitigate the effects of these vulnerabilities.
This advisory is posted at
.
Note
Another related advisory has been posted with this advisory. This additional advisory also
describes a vulnerability related to cryptography that affects Cisco IOS. This related advisory is
available at the following link:
.
A combined software table for Cisco IOS is available to aid customers in choosing a software
releases that fixes all security vulnerabilities published as of May 22, 2007. This software table is
available at the following link:
.
CSCsg18176
When dynamic ARP inspection is enabled and IP validation is disabled, the switch no longer drops
ARP requests that have a source address of 0.0.0.0.
CSCsg30295
When you configure an IP address on a switch virtual interface (SVI) with DCHP and enable DHCP
snooping on the SVI VLAN, the switch SVI now obtains an IP address.
CSCsh92834
When trunk ports are participating in a Flex Link configuration, entering a
shutdown
or
no
shutdown
interface configuration command on the port no longer causes the switch to reload.
CSCsh92844
Online insertion and removal (OIR) of an SFP module no longer causes error-disabled ports to
change to Up or Standby states, resulting in lost data.
CSCsi00879
When IGMP snooping is enabled, multicast traffic no longer is dropped after a port channel interface
link flaps.
CSCsi30888
The switch no longer halts when configuring link-state tracking with EtherChannel downstream
ports or when booting up a switch already configured with link-state tracking with EtherChannel
downstream ports.
Documentation Updates
This section contains these documentation updates:
“Updates to Software Configuration Guide” section on page 21
“Updates to Getting Started Guide” section on page 21