First published: Wed Apr 06 2016(Updated: )
Cisco TelePresence Server 3.1 on 7010, Mobility Services Engine (MSE) 8710, Multiparty Media 310 and 320, and Virtual Machine (VM) devices allows remote attackers to cause a denial of service (device reload) via malformed STUN packets, aka Bug ID CSCuv01348.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell EMC Isilon OneFS | =8.2.2 | |
NETGEAR JR6150 firmware | <2017-01-06 | |
Zyxel GS1900-10HP firmware | <2.50\(aazi.0\)c0 | |
zzinc KeyMouse | =3.08 | |
Cisco TelePresence Server 7010 | ||
Cisco TelePresence Server MSE 8710 | ||
Cisco TelePresence Server on Multiparty Media 310 | ||
Cisco TelePresence Server on Multiparty Media 320 | ||
Cisco TelePresence Server on Virtual Machine |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2015-6312 is rated as high due to its potential to cause a denial of service through device reload.
To fix CVE-2015-6312, ensure that your Cisco TelePresence Server and associated devices are updated to the latest firmware that addresses this vulnerability.
CVE-2015-6312 affects devices running specific versions of Cisco TelePresence Server, Mobility Services Engine, and certain Multiparty Media configurations.
CVE-2015-6312 allows remote attackers to cause a denial of service by sending malformed STUN packets.
To determine if your device is vulnerable to CVE-2015-6312, check if it runs any affected versions of the specified Cisco software or hardware.