7.8
CWE
20
Advisory Published
Updated

CVE-2015-0725: Input Validation

First published: Thu Jul 16 2015(Updated: )

Cisco Videoscape Distribution Suite Service Broker (aka VDS-SB), when a VDSM configuration on UCS is used, and Videoscape Distribution Suite for Internet Streaming (aka VDS-IS or CDS-IS) before 3.3.1 R7 and 4.x before 4.0.0 R4 allow remote attackers to cause a denial of service (device reload) via a crafted HTTP request, aka Bug IDs CSCus79834 and CSCuu63409.

Credit: ykramarz@cisco.com

Affected SoftwareAffected VersionHow to fix
Cisco Videoscape Distribution Suite Service Broker=1.0.1
Cisco Videoscape Distribution Suite Service Broker=1.0_base
Cisco Videoscape Distribution Suite Service Broker=1.1_base
Cisco Videoscape Distribution Suite for Internet Streaming=1.0.0
Cisco Videoscape Distribution Suite for Internet Streaming=2.0\(1\)
Cisco Videoscape Distribution Suite for Internet Streaming=2.0\(3\)
Cisco Videoscape Distribution Suite for Internet Streaming=2.2\(1\)
Cisco Videoscape Distribution Suite for Internet Streaming=2.4\(1\)
Cisco Videoscape Distribution Suite for Internet Streaming=2.4\(3\)
Cisco Videoscape Distribution Suite for Internet Streaming=2.4\(5\)
Cisco Videoscape Distribution Suite for Internet Streaming=2.5\(1\)
Cisco Videoscape Distribution Suite for Internet Streaming=2.5\(3\)
Cisco Videoscape Distribution Suite for Internet Streaming=2.5\(7\)
Cisco Videoscape Distribution Suite for Internet Streaming=2.5\(9\)
Cisco Videoscape Distribution Suite for Internet Streaming=2.5\(11\)
Cisco Videoscape Distribution Suite for Internet Streaming=2.6\(1\)
Cisco Videoscape Distribution Suite for Internet Streaming=2.6\(3\)
Cisco Videoscape Distribution Suite for Internet Streaming=2.6\(3\)_b26
Cisco Videoscape Distribution Suite for Internet Streaming=2.6\(3\)_b35
Cisco Videoscape Distribution Suite for Internet Streaming=2.6\(3\)_b39
Cisco Videoscape Distribution Suite for Internet Streaming=2.6\(3\)_b45
Cisco Videoscape Distribution Suite for Internet Streaming=2.6\(3\)_b47
Cisco Videoscape Distribution Suite for Internet Streaming=2.6\(3\)_b50
Cisco Videoscape Distribution Suite for Internet Streaming=3.0.0
Cisco Videoscape Distribution Suite for Internet Streaming=3.1.2
Cisco Videoscape Distribution Suite for Internet Streaming=3.1.2_b17
Cisco Videoscape Distribution Suite for Internet Streaming=3.1.2_b26
Cisco Videoscape Distribution Suite for Internet Streaming=3.1.2_b34
Cisco Videoscape Distribution Suite for Internet Streaming=3.1.2_b54
Cisco Videoscape Distribution Suite for Internet Streaming=3.1.2_b60
Cisco Videoscape Distribution Suite for Internet Streaming=3.2.0
Cisco Videoscape Distribution Suite for Internet Streaming=3.2.0_b26
Cisco Videoscape Distribution Suite for Internet Streaming=3.2.1
Cisco Videoscape Distribution Suite for Internet Streaming=3.2.1_b9
Cisco Videoscape Distribution Suite for Internet Streaming=3.2.1_b15
Cisco Videoscape Distribution Suite for Internet Streaming=3.2.1_b20
Cisco Videoscape Distribution Suite for Internet Streaming=3.3.0
Cisco Videoscape Distribution Suite for Internet Streaming=3.3.0-r1
Cisco Videoscape Distribution Suite for Internet Streaming=3.3.1
Cisco Videoscape Distribution Suite for Internet Streaming=3.3.1-r1
Cisco Videoscape Distribution Suite for Internet Streaming=3.3.1-r2
Cisco Videoscape Distribution Suite for Internet Streaming=3.3.1-r3
Cisco Videoscape Distribution Suite for Internet Streaming=3.3.1-r4
Cisco Videoscape Distribution Suite for Internet Streaming=3.3.1-r5
Cisco Videoscape Distribution Suite for Internet Streaming=3.3.1-r6
Cisco Videoscape Distribution Suite for Internet Streaming=4.0.0
Cisco Videoscape Distribution Suite for Internet Streaming=4.0.0-r1
Cisco Videoscape Distribution Suite for Internet Streaming=4.0.0-r2
Cisco Videoscape Distribution Suite for Internet Streaming=4.0.0-r3

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2015-0725?

    CVE-2015-0725 has been rated as a high severity vulnerability due to its potential to cause a denial of service.

  • How do I fix CVE-2015-0725?

    To mitigate CVE-2015-0725, upgrade the affected Cisco Videoscape Distribution Suite for Internet Streaming and Service Broker to the latest recommended versions.

  • What versions are affected by CVE-2015-0725?

    CVE-2015-0725 impacts specific versions of Cisco Videoscape Distribution Suite Service Broker and Videoscape Distribution Suite for Internet Streaming prior to 3.3.1 R7 and 4.0.0 R4.

  • What type of attack is possible with CVE-2015-0725?

    CVE-2015-0725 allows remote attackers to cause a denial of service by triggering a device reload.

  • Is there a patch available for CVE-2015-0725?

    Yes, Cisco has released patches for CVE-2015-0725 as part of their updated software versions.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203