CVE-2016-6384
published 2016-10-05CVE-2016-6384: Cisco IOS 12.2 through 12.4 and 15.0 through 15.6 and IOS XE 3.1 through 3.17 and 16.2 allow remote attackers to cause a denial of service (device reload) via…
PriorityP338high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
4.19%
89.9th percentile
Cisco IOS 12.2 through 12.4 and 15.0 through 15.6 and IOS XE 3.1 through 3.17 and 16.2 allow remote attackers to cause a denial of service (device reload) via crafted fields in an H.323 message, aka Bug ID CSCux04257.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios | 12.2 – 12.4 | — |
| cisco | ios | 15.0 – 15.6 | — |
| cisco | ios_and_ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | 3.1 – 3.17 | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
vendor_cisco7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Rockwell Automation Stratix 5900
cisa_ics·2017-05-10
Rockwell Automation Stratix 5900
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Rockwell Automation Stratix 5900
Last RevisedMay 10, 2017
Alert CodeICSA-17-094-04
## CVSS v3 10.0
ATTENTION: Remotely exploitable/low skill level to exploit.
Vendor: Rockwell Automation
Equipment: Stratix 5900
Vulnerabilities: Improper Input Validation, Resource Management Errors, Improper Authentication, Path Traversal.
## REPOSTED INFORMATION
This advisory was originally posted to the NCCIC Portal on April 4, 2017, and is being released to the NCCIC/ICS-CERT web site.
## AFFECTED PRODUCTS
Rockwell Automation reports that these vulnerabilities affect the following Strat
Cisco
Cisco IOS and IOS XE Software H.323 Message Validation Denial of Service Vulnerability
vendor_cisco·2016-09-28·CVSS 7.8
CVE-2016-6384 [HIGH] CWE-399 Cisco IOS and IOS XE Software H.323 Message Validation Denial of Service Vulnerability
Cisco IOS and IOS XE Software H.323 Message Validation Denial of Service Vulnerability
A vulnerability in the H.323 subsystem of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to create a denial of service (DoS) condition on an affected device.
The vulnerability is due to a failure to properly validate certain fields in an H.323 protocol suite message. When processing the malicious message, the affected device may attempt to access an invalid memory region, resulting in a crash. An attacker who can submit an H.323 packet designed to trigger the vulnerability could cause the affected device to crash and restart.
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
This advisory is av
Cisco
Cisco IOS and IOS XE Software H.323 Message Validation Denial of Service Vulnerability
vendor_cisco
CVE-2016-6384 Cisco IOS and IOS XE Software H.323 Message Validation Denial of Service Vulnerability
CVE-2016-6384: Cisco IOS and IOS XE Software H.323 Message Validation Denial of Service Vulnerability
A vulnerability in the H.323 subsystem of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to create a denial of service (DoS) condition on an affected device. The vulnerability is due to a failure to properly validate certain fields in an H.323 protocol suite message. When processing the malicious message, the affected device may attempt to access an invalid memory region, resulting in a crash. An attacker who can submit an H.323 packet designed to trigger the vulnerability could cause the affected device to crash and restart. Cisco has released software updates that address this vulnerability. There are no
CWE: CWE-399, CWE-399
Bug IDs: CSCux04257
GHSA
GHSA-5ccc-frc7-5rrg: Cisco IOS 12
ghsa_unreviewed·2022-05-13
CVE-2016-6384 [HIGH] CWE-20 GHSA-5ccc-frc7-5rrg: Cisco IOS 12
Cisco IOS 12.2 through 12.4 and 15.0 through 15.6 and IOS XE 3.1 through 3.17 and 16.2 allow remote attackers to cause a denial of service (device reload) via crafted fields in an H.323 message, aka Bug ID CSCux04257.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160928-h323http://www.securityfocus.com/bid/93209http://www.securitytracker.com/id/1036914http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160928-h323http://www.securityfocus.com/bid/93209http://www.securitytracker.com/id/1036914
2016-10-05
Published