PT-2016-1640 · Cisco · Cisco Telepresence Server
Published
2016-04-06
·
Updated
2016-12-03
·
CVE-2015-6312
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Cisco TelePresence Server version 3.1
Description
The issue is caused by a buffer overflow in the Cisco TelePresence Server's software, allowing remote attackers to cause a denial of service (device reload) by sending malformed STUN packets.
Recommendations
For Cisco TelePresence Server version 3.1, update the software to a version that fixes the buffer overflow issue to prevent denial of service attacks via malformed STUN packets.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco Telepresence Server