CVE-2015-6360
published 2016-04-21CVE-2015-6360: The encryption-processing feature in Cisco libSRTP before 1.5.3 allows remote attackers to cause a denial of service via crafted fields in SRTP packets, aka…
PriorityP343high7.5CVSS 3.0
AVNACLPRNUINSUCNINAH
EPSS
8.28%
94.3th percentile
The encryption-processing feature in Cisco libSRTP before 1.5.3 allows remote attackers to cause a denial of service via crafted fields in SRTP packets, aka Bug ID CSCux00686.
Affected
292 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
| cisco | adaptive_security_appliance_software | — | — |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
vendor_cisco7.8HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Multiple Cisco Products libSRTP Denial of Service Vulnerability
vendor_cisco·2016-04-20·CVSS 7.8
CVE-2015-6360 [HIGH] CWE-119 Multiple Cisco Products libSRTP Denial of Service Vulnerability
Multiple Cisco Products libSRTP Denial of Service Vulnerability
Cisco released version 1.5.3 of the Secure Real-Time Transport Protocol (SRTP) library (libSRTP), which addresses a denial of service (DoS) vulnerability. Multiple Cisco products incorporate a vulnerable version of the libSRTP library.
The vulnerability is in the encryption processing subsystem of libSRTP and could allow an unauthenticated, remote attacker to trigger a DoS condition. The vulnerability is due to improper input validation of certain fields of SRTP packets. An attacker could exploit this vulnerability by sending a crafted SRTP packet designed to trigger the issue to an affected device.
The impact of this vulnerability on Cisco products may vary depending on the affected product. Details about the impact on eac
Red Hat
libsrtp: improper handling of CSRC count and extension header length in RTP header
vendor_redhat·2016-04-02·CVSS 7.5
CVE-2015-6360 [HIGH] libsrtp: improper handling of CSRC count and extension header length in RTP header
libsrtp: improper handling of CSRC count and extension header length in RTP header
The encryption-processing feature in Cisco libSRTP before 1.5.3 allows remote attackers to cause a denial of service via crafted fields in SRTP packets, aka Bug ID CSCux00686.
Cisco
Multiple Cisco Products libSRTP Denial of Service Vulnerability
vendor_cisco
CVE-2015-6360 Multiple Cisco Products libSRTP Denial of Service Vulnerability
CVE-2015-6360: Multiple Cisco Products libSRTP Denial of Service Vulnerability
Cisco released version 1.5.3 of the Secure Real-Time Transport Protocol (SRTP) library (libSRTP), which addresses a denial of service (DoS) vulnerability. Multiple Cisco products incorporate a vulnerable version of the libSRTP library. The vulnerability is in the encryption processing subsystem of libSRTP and could allow an unauthenticated, remote attacker to trigger a DoS condition. The vulnerability is due to improper input validation of certain fields of SRTP packets. An attacker could exploit this vulnerability by sending a crafted SRTP packet designed to trigger the issue to an affected device. The impact of this vulnerability on Cisco products may vary depending on the affected product.
CWE: CWE-119, CWE-1
GHSA
GHSA-5m3h-4mfw-792p: The encryption-processing feature in Cisco libSRTP before 1
ghsa_unreviewed·2022-05-17
CVE-2015-6360 [HIGH] CWE-119 GHSA-5m3h-4mfw-792p: The encryption-processing feature in Cisco libSRTP before 1
The encryption-processing feature in Cisco libSRTP before 1.5.3 allows remote attackers to cause a denial of service via crafted fields in SRTP packets, aka Bug ID CSCux00686.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2015-6360 libsrtp: improper handling of CSRC count and extension header length in RTP header [rhel-7]
bugzilla·2016-04-04·CVSS 7.5
CVE-2015-6360 [HIGH] CVE-2015-6360 libsrtp: improper handling of CSRC count and extension header length in RTP header [rhel-7]
CVE-2015-6360 libsrtp: improper handling of CSRC count and extension header length in RTP header [rhel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
[bug automatically crea
Bugzilla
CVE-2015-6360 libsrtp: improper handling of CSRC count and extension header length in RTP header [fedora-all]
bugzilla·2016-04-04·CVSS 7.5
CVE-2015-6360 [HIGH] CVE-2015-6360 libsrtp: improper handling of CSRC count and extension header length in RTP header [fedora-all]
CVE-2015-6360 libsrtp: improper handling of CSRC count and extension header length in RTP header [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects
Bugzilla
CVE-2015-6360 libsrtp: improper handling of CSRC count and extension header length in RTP header
bugzilla·2016-04-04·CVSS 7.5
CVE-2015-6360 [HIGH] CVE-2015-6360 libsrtp: improper handling of CSRC count and extension header length in RTP header
CVE-2015-6360 libsrtp: improper handling of CSRC count and extension header length in RTP header
Randell Jesup and the Firefox team discovered that srtp, Cisco's
reference implementation of the Secure Real-time Transport Protocol
(SRTP), does not properly handle RTP header CSRC count and extension
header length. A remote attacker can exploit this vulnerability to crash
an application linked against libsrtp, resulting in a denial of service.
References:
http://seclists.org/bugtraq/2016/Apr/11
Discussion:
Created libsrtp tracking bugs for this issue:
Affects: fedora-all [bug 1323703]
Affects: epel-6 [bug 1323704]
Affects: epel-7 [bug 1323705]
---
Debian patch:
https://sources.debian.net/src/srtp/1.4.5~20130609~dfsg-1.2/debian/patches/CVE-2015-6360.patch/
Upstream patch:
https://gith
Bugzilla
CVE-2015-6360 libsrtp: improper handling of CSRC count and extension header length in RTP header [epel-6]
bugzilla·2016-04-04·CVSS 7.5
CVE-2015-6360 [HIGH] CVE-2015-6360 libsrtp: improper handling of CSRC count and extension header length in RTP header [epel-6]
CVE-2015-6360 libsrtp: improper handling of CSRC count and extension header length in RTP header [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
[bug automatically crea
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160420-libsrtphttp://www.debian.org/security/2016/dsa-3539http://www.securitytracker.com/id/1035636http://www.securitytracker.com/id/1035637http://www.securitytracker.com/id/1035648http://www.securitytracker.com/id/1035649http://www.securitytracker.com/id/1035650http://www.securitytracker.com/id/1035651http://www.securitytracker.com/id/1035652http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160420-libsrtphttp://www.debian.org/security/2016/dsa-3539http://www.securitytracker.com/id/1035636http://www.securitytracker.com/id/1035637http://www.securitytracker.com/id/1035648http://www.securitytracker.com/id/1035649http://www.securitytracker.com/id/1035650http://www.securitytracker.com/id/1035651http://www.securitytracker.com/id/1035652
2016-04-21
Published