Denial of Service Vulnerability in Cisco TelePresence MCU Software
CVE-2014-3397

Currently unrated

Key Information:

Vendor
Cisco
Vendor
CVE Published:
19 October 2014

Summary

The network stack in Cisco TelePresence MCU Software versions prior to 4.3(2.30) is vulnerable to a denial of service attack. This can be exploited by remote attackers sending specially crafted TCP packets, which result in excessive memory consumption. Consequently, this may disrupt the normal operation of the affected software, leading to service outages.

References

EPSS Score

6% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.