Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.140274
Categoría:CISCO
Título:Cisco Meeting Server H.264 Protocol Denial of Service Vulnerability
Resumen:A vulnerability in the implementation of the H.264 protocol in Cisco Meeting;Server (CMS) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an;affected system.
Descripción:Summary:
A vulnerability in the implementation of the H.264 protocol in Cisco Meeting
Server (CMS) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an
affected system.

Vulnerability Insight:
The vulnerability exists because the affected application does not properly
validate Fragmentation Unit (FU-A) protocol packets. An attacker could exploit this vulnerability by sending a
crafted H.264 FU-A packet through the affected application.

Vulnerability Impact:
A successful exploit could allow the attacker to cause a DoS condition on the
affected system due to an unexpected restart of the CMS media process on the system. Although the CMS platform
continues to operate and only the single, affected CMS media process is restarted, a brief interruption of media
traffic for certain users could occur.

Solution:
See the referenced vendor advisory for a solution.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2017-6763
BugTraq ID: 100111
http://www.securityfocus.com/bid/100111
http://www.securitytracker.com/id/1039058
CopyrightCopyright (C) 2017 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.