First published: Wed Apr 06 2016(Updated: )
Cisco TelePresence Server 4.1(2.29) through 4.2(4.17) on 7010; Mobility Services Engine (MSE) 8710; Multiparty Media 310, 320, and 820; and Virtual Machine (VM) devices allows remote attackers to cause a denial of service (memory consumption or device reload) via crafted HTTP requests that are not followed by an unspecified negotiation, aka Bug ID CSCuv47565.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Solaris and Zettabyte File System (ZFS) | =snv_124 | |
Zyxel GS1900-10HP firmware | <2.50\(aazi.0\)c0 | |
zzinc KeyMouse | =3.08 | |
Cisco TelePresence Server 7010 | ||
Cisco TelePresence Server MSE 8710 | ||
Cisco TelePresence Server | ||
Cisco TelePresence Server on Multiparty Media 320 | ||
Cisco TelePresence Server on Multiparty Media 820 | ||
Cisco TelePresence Server |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-6313 is categorized as a denial of service vulnerability that can lead to memory consumption or device reload.
To fix CVE-2015-6313, it is essential to upgrade affected Cisco TelePresence Server software versions to the latest patched versions provided by Cisco.
CVE-2015-6313 affects Cisco TelePresence Server versions from 4.1(2.29) through 4.2(4.17) on various models.
Yes, CVE-2015-6313 can be exploited remotely through crafted HTTP requests.
The potential impacts of CVE-2015-6313 include denial of service due to memory consumption or unexpected device reloads.