This notice addresses vulnerability in the
AXP techsupport support shell EXEC mode CLI. Specifically, "awk" and "more" utilities have been removed from the shell to plug mechanisms within those utilities that permit escaping from the "restricted" shell environment to "unrestricted" mode that may potentially allow full access to AXP guest/host file systems.
Future AXP releases may reinstate the removed "awk" and "more" utilities by disabling the mechanisms that permit escapes out of the restricted shell environment.
Resolved Caveats- Cisco AXP Version 1.1.7 ¿CSCsq89795 cyclades log file should have timestamps & needs improvement.
¿CSCsx94365 bind serial <name> command allows duplicate entry
¿CSCsy75257 vserial startup python script throws error and stops creating new process
¿CSCsy80648 content of cyclades log file gets overwritten instead of appending
¿CSCsy75576 Upgrading platform changes file permissions in guest environment
¿CSCtb65413 Awk and More are Present in Restricted Shell after Upgrade from 1.1.1
¿CSCtc25607 disk resource is wrong after doing upgrade an app pkg in axp 1.1.7 image
Read more @
http://www.cisco.com/en/US/docs/interfaces_modules/services_modules/ax/1.1/release/notes/1.1.7/axprn.html Download AXP Version 1.1.7 from
http://tools.cisco.com/support/downloads/go/Model.x?mdfid=282831883&mdfLevel=Model&treeName=Routers&modelName=Cisco%20Application%20Extension%20Platform%20Version%201.1&treeMdfId=268437899