First published: Fri Feb 25 2011(Updated: )
Buffer overflow on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 1.6.x; Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x; Cisco TelePresence endpoint devices with software 1.2.x through 1.6.x; and Cisco TelePresence Manager 1.2.x, 1.3.x, 1.4.x, 1.5.x, and 1.6.2 allows remote attackers to execute arbitrary code via a crafted Cisco Discovery Protocol packet, aka Bug IDs CSCtd75769, CSCtd75766, CSCtd75754, and CSCtd75761.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco TelePresence Manager | =1.5.1 | |
Cisco TelePresence Manager | =1.4.0 | |
Cisco TelePresence Manager | =1.6.2 | |
Cisco TelePresence Manager | =1.5.2 | |
Cisco TelePresence Manager | =1.2.0.0 | |
Cisco TelePresence Manager | =1.3.2 | |
Cisco Adaptive Security Appliance Software | =1.6.0 | |
Cisco Adaptive Security Appliance 5500 | ||
Cisco ASA 5500 CSC-SSM | ||
Cisco TelePresence Multipoint Switch software | =1.0.4.0 | |
Cisco TelePresence Multipoint Switch software | =1.1.0 | |
Cisco TelePresence Multipoint Switch software | =1.1.1 | |
Cisco TelePresence Multipoint Switch software | =1.1.2 | |
Cisco TelePresence Multipoint Switch software | =1.5.0 | |
Cisco TelePresence Multipoint Switch software | =1.5.1 | |
Cisco TelePresence Multipoint Switch software | =1.5.2 | |
Cisco TelePresence Multipoint Switch software | =1.5.3 | |
Cisco TelePresence Multipoint Switch software | =1.5.4 | |
Cisco TelePresence Multipoint Switch software | =1.5.5 | |
Cisco TelePresence Multipoint Switch software | =1.5.6 | |
Cisco TelePresence Multipoint Switch software | =1.6.0 | |
Cisco TelePresence Multipoint Switch software | =1.6.1 | |
Cisco TelePresence Multipoint Switch software | =1.6.2 | |
Cisco TelePresence Multipoint Switch software | =1.6.3 | |
Cisco TelePresence Multipoint Switch software | =1.6.4 | |
Cisco TelePresence Multipoint Switch software | ||
Cisco TelePresence System Software | =1.2.3 | |
Cisco TelePresence System Software | =1.3.2 | |
Cisco TelePresence System Software | =1.4.7 | |
Cisco TelePresence System Software | =1.5.1 | |
Cisco TelePresence System Software | =1.5.3 | |
Cisco TelePresence System Software | =1.5.10 | |
Cisco TelePresence System Software | =1.5.11 | |
Cisco TelePresence System Software | =1.5.12 | |
Cisco TelePresence System Software | =1.5.13 | |
Cisco TelePresence System Software | =1.6.0 | |
Cisco TelePresence System Software | =1.6.2 | |
Cisco TelePresence System Software | =1.6.3 | |
Cisco TelePresence System Software | =1.6.4 | |
Cisco TelePresence System Software | =1.6.5 | |
Cisco TelePresence System Software | =1.6.6 | |
Cisco TelePresence System Software | =1.6.7 | |
Cisco TelePresence System Software | =1.6.8 | |
Cisco TelePresence System 1000 MXP | ||
Cisco TelePresence System 1100 | ||
Cisco TelePresence System 3000 | ||
Cisco TelePresence System Software | =1.6.0 | |
Cisco TelePresence System Software | =1.6.2 | |
Cisco TelePresence System Software | =1.6.3 | |
Cisco TelePresence System Software | =1.6.4 | |
Cisco TelePresence System Software | =1.6.5 | |
Cisco TelePresence System Software | =1.6.6 | |
Cisco TelePresence System Software | =1.6.7 | |
Cisco TelePresence System Software | =1.6.8 | |
Cisco TelePresence System 1300 | ||
Cisco TelePresence System Software | =1.4.7 | |
Cisco TelePresence System Software | =1.5.1 | |
Cisco TelePresence System Software | =1.5.3 | |
Cisco TelePresence System Software | =1.5.10 | |
Cisco TelePresence System Software | =1.5.11 | |
Cisco TelePresence System Software | =1.5.12 | |
Cisco TelePresence System Software | =1.5.13 | |
Cisco TelePresence System 3200 | ||
Cisco TelePresence System 500 Series |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-0379 is classified as a critical vulnerability due to its potential for remote code execution.
To remediate CVE-2011-0379, upgrade to the latest version of the affected Cisco software that addresses the vulnerability.
CVE-2011-0379 affects Cisco Adaptive Security Appliances 5500 series, Cisco TelePresence Multipoint Switch, and various Cisco TelePresence endpoints.
CVE-2011-0379 is a buffer overflow vulnerability that can allow attackers to execute arbitrary code.
There are no recommended workarounds for CVE-2011-0379; upgrading to the patched version is necessary.