CVE-2011-2543: Buffer Overflow
Buffer overflow in the cuil component in Cisco Telepresence System Integrator C Series 4.x before TC4.2.0 allows remote authenticated users to cause a denial of service (endpoint reboot or process crash) or possibly execute arbitrary code via a long location parameter to the getxml program, aka Bug ID CSCtq46496.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-2543?
CVE-2011-2543 is considered a medium severity vulnerability due to its potential to cause denial of service and possibly allow remote code execution.
How do I fix CVE-2011-2543?
To fix CVE-2011-2543, upgrade the Cisco TelePresence System Integrator C Series software to a version equal to or greater than TC4.2.0.
What types of exploits are possible with CVE-2011-2543?
CVE-2011-2543 can be exploited to cause a denial of service, which may result in endpoint reboot or process crashes.
Which Cisco products are affected by CVE-2011-2543?
CVE-2011-2543 affects Cisco TelePresence Codec C40, C60, C90, and various versions of Cisco TelePresence C Series Software up to TC4.1.2.
Is CVE-2011-2543 a remote or local exploit?
CVE-2011-2543 is a remote vulnerability that requires an authenticated user to exploit.