CVE-2012-0331: High severity cisco telepresence system software vulnerability
Cisco TelePresence Video Communication Server with software before X7.0.1 allows remote attackers to cause a denial of service (device crash) via a crafted SIP packet, as demonstrated by a SIP INVITE message from a Tandberg device, aka Bug ID CSCtq73319.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-0331?
CVE-2012-0331 is classified as a denial of service vulnerability that may lead to device crashes.
How do I fix CVE-2012-0331?
To fix CVE-2012-0331, upgrade your Cisco TelePresence Video Communication Server software to version X7.0.1 or later.
Which versions of Cisco TelePresence products are affected by CVE-2012-0331?
Cisco TelePresence Video Communication Server software versions before X7.0.1, as well as X5.2, X6.0, and X6.1, are affected by CVE-2012-0331.
What types of attacks are possible with CVE-2012-0331?
CVE-2012-0331 allows remote attackers to craft SIP packets that can cause device crashes.
Is there a workaround for CVE-2012-0331?
There are no documented workarounds for CVE-2012-0331; the recommended action is to update to the fixed version.