PT-2017-2888 · Cisco · Cisco Videoscape Distribution Suite For Television
Publicado
2017-03-09
·
Atualizado
2019-10-09
·
CVE-2017-6745
CVSS v2.0
7.8
Alta
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Cisco Videoscape Distribution Suite for Television version 3.2(5)ES1
Description
A vulnerability in the cache server could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on a targeted appliance. The issue is due to excessive mapped connections exhausting the allotted resources within the system. An attacker could exploit this by sending large amounts of inbound traffic to a device, intending to overload certain resources. A successful exploit could cause the device to reload, resulting in a DoS condition.
Recommendations
For Cisco Videoscape Distribution Suite for Television version 3.2(5)ES1, consider restricting access to the cache server to minimize the risk of exploitation until a patch is available. As a temporary workaround, limiting the amount of inbound traffic to the device may also help prevent the exhaustion of system resources.
Correção
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Cisco Videoscape Distribution Suite For Television