CVE-2013-1246: Medium severity cisco telepresence system software vulnerability
Cisco TelePresence System Software does not properly handle inactive t-shell sessions, which allows remote authenticated users to cause a denial of service (memory consumption and service outage) by establishing multiple SSH connections, aka Bug ID CSCug77610.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-1246?
CVE-2013-1246 is classified as a denial of service vulnerability due to its impact on system availability.
How do I fix CVE-2013-1246?
To mitigate CVE-2013-1246, it is recommended to limit the number of SSH connections or apply available security patches from Cisco.
Who is affected by CVE-2013-1246?
CVE-2013-1246 affects users of Cisco TelePresence System Software that are running versions vulnerable to this issue.
What type of attack does CVE-2013-1246 facilitate?
CVE-2013-1246 allows remote authenticated users to perform a denial of service attack by exhausting server memory.
Is there a workaround for CVE-2013-1246?
A potential workaround for CVE-2013-1246 includes monitoring and limiting SSH access to the Cisco TelePresence System.