First published: Fri Jun 21 2013(Updated: )
Cisco TelePresence TC Software before 5.1.7 and TE Software before 4.1.3 allow remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCue01743.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco TelePresence TC | <=5.1.6 | |
Cisco TelePresence TC | =5.0.0 | |
Cisco TelePresence TC | =5.0.1 | |
Cisco TelePresence TC | =5.0.2 | |
Cisco TelePresence TC | =5.1.0 | |
Cisco TelePresence TC | =5.1.1 | |
Cisco TelePresence TC | =5.1.2 | |
Cisco TelePresence TC | =5.1.3 | |
Cisco TelePresence TC | =5.1.4 | |
Cisco TelePresence TC | =5.1.5 | |
Cisco IP Video Phone E20 | ||
Cisco TelePresence Codec C40 firmware | ||
Cisco TelePresence Codec | ||
Cisco TelePresence Codec | ||
Cisco TelePresence EX60 | ||
Cisco TelePresence EX90 | ||
Cisco TelePresence MX200 | ||
Cisco TelePresence MX300 | ||
Cisco TelePresence Profile 55 | ||
Cisco TelePresence Profile 65 | ||
Cisco TelePresence Quick Set C20 | ||
Cisco TelePresence Quick Set SX20 | ||
Cisco TelePresence TE Software | <=4.1.2 | |
Cisco TelePresence TE Software | =4.1.0 | |
Cisco TelePresence TE Software | =4.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-3377 has a high severity level as it allows remote attackers to cause a denial of service by sending crafted SIP packets.
To fix CVE-2013-3377, upgrade your Cisco TelePresence TC Software to version 5.1.7 or later, or TE Software to version 4.1.3 or later.
CVE-2013-3377 affects various versions of Cisco TelePresence TC and TE Software, as well as several hardware devices using those software versions.
CVE-2013-3377 is classified as a denial of service vulnerability.
CVE-2013-3377 was disclosed on June 19, 2013.