CVE-2014-2157: Input Validation
Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCty45733.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-2157?
CVE-2014-2157 has a high severity rating as it allows remote attackers to cause a denial of service, leading to device reload.
How do I fix CVE-2014-2157?
To fix CVE-2014-2157, upgrade your Cisco TelePresence System MXP Series Software to version F9.3.1 or later.
What devices are affected by CVE-2014-2157?
CVE-2014-2157 affects various models of Cisco TelePresence System MXP, including the Tandberg 2000, 550, 770, 880, and 990 MXP.
What kind of attack does CVE-2014-2157 facilitate?
CVE-2014-2157 facilitates denial of service attacks through the exploitation of crafted SIP packets.
Is there a workaround for CVE-2014-2157?
There are no documented workarounds for CVE-2014-2157; updating the software is the recommended course of action.