Specifications

Table Of Contents
90
Release Notes for Cisco 7000 Family for Cisco IOS Release 12.1 T
78-10811-05
Important Notes
ICaveat CSCdr91706 and IOS HTTP Vulnerability
A defect in multiple releases of Cisco IOS software will cause a Cisco router or switch to halt and reload
if the IOS HTTP service is enabled, browsing to http://router-ip/anytext?/ is attempted, and the enable
password is supplied when requested. This defect can be exploited to produce a denial of service (DoS)
attack.
The vulnerability, identified as Cisco bug ID CSCdr91706, affects virtually all mainstream Cisco
routers and switches running Cisco IOS software releases 12.0 through 12.1, inclusive. This is not the
same defect as CSCdr36952.
The vulnerability has been corrected and Cisco is making fixed releases available for free to replace all
affected IOS releases. Customers are urged to upgrade to releases that are not vulnerable to this defect
as shown in detail below.
This vulnerability can only be exploited if the enable password is known or not set.
You are strongly encouraged to read the complete advisory, which is available at
http://www.cisco.com/warp/public/707/ioshttpserverquery-pub.shtml .
Last Maintenance Release of Cisco IOS Release 12.1 T
The last maintenance release of the 12.1 T release train is 12.1(5)T. The migration path for customers
who need bug fixes for the 12.1 T features is the 12.2 mainline release. The 12.2 mainline release has
the complete feature content of 12.1 T and will eventually reach general deployment (GD).
The last maintenance release was renamed from 12.1(4)T to 12.1(5)T to synchronize with its parent
software base, the 12.1(5) mainline release, and to reflect that 12.1(5)T has all the bug fixes of the
12.1(5) mainline release. The 12.1 T release train is a superset of the 12.1 mainline release; hence any
defect fixed in the 12.1 mainline is also fixed in 12.1 T. The set of features for 12.1(4)T is the same as
that for 12.1(5)T. There was no change in the feature content of the release. The release was renamed
so that the releases would be consistent with the Cisco release process.
Image Deferral, Cisco IOS Release 12.1(3a)T2
The following images were deferred from Cisco IOS Release 12.1(3a)T2 to Cisco IOS Release
12.1(3a)T3:
c7200-ds-mz
c7200-ix-mz
c7200-js-mz
These images were deferred due to the following caveats:
CSCdr54535—Service-policy output on PA-A3 deleted after link down/up
CSCdr52838—POTENT: Add support for PA recovery from watchdog timer expiration