PT-2017-2888 · Cisco · Cisco Videoscape Distribution Suite For Television
Published
2017-03-09
·
Updated
2019-10-09
·
CVE-2017-6745
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Cisco Videoscape Distribution Suite for Television version 3.2(5)ES1
Description
A vulnerability in the cache server could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on a targeted appliance. The issue is due to excessive mapped connections exhausting the allotted resources within the system. An attacker could exploit this by sending large amounts of inbound traffic to a device, intending to overload certain resources. A successful exploit could cause the device to reload, resulting in a DoS condition.
Recommendations
For Cisco Videoscape Distribution Suite for Television version 3.2(5)ES1, consider restricting access to the cache server to minimize the risk of exploitation until a patch is available. As a temporary workaround, limiting the amount of inbound traffic to the device may also help prevent the exhaustion of system resources.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco Videoscape Distribution Suite For Television