CVE-2017-3790
published 2017-02-01CVE-2017-3790: A vulnerability in the received packet parser of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) software could allow an…
PriorityP350high8.6CVSS 3.0
AVNACLPRNUINSCCNINAH
EPSS
3.49%
87.8th percentile
A vulnerability in the received packet parser of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) software could allow an unauthenticated, remote attacker to cause a reload of the affected system, resulting in a denial of service (DoS) condition. The vulnerability is due to insufficient size validation of user-supplied data. An attacker could exploit this vulnerability by sending crafted H.224 data in Real-Time Transport Protocol (RTP) packets in an H.323 call. An exploit could allow the attacker to overflow a buffer in a cache that belongs to the received packet parser, which will result in a crash of the application, resulting in a DoS condition. All versions of Cisco Expressway Series Software and Cisco TelePresence VCS Software prior to version X8.8.2 are vulnerable. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. Cisco Bug IDs: CSCus99263.
Affected
33 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway | — | — |
| cisco | expressway_series_and_telepresence_vcs | — | — |
| cisco | telepresence_video_communication_server | — | — |
| cisco | telepresence_video_communication_server | — | — |
| cisco | telepresence_video_communication_server | — | — |
CVSS provenance
nvdv3.08.6HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
vendor_cisco8.6HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Expressway Series and TelePresence VCS Denial of Service Vulnerability
vendor_cisco·2017-01-25·CVSS 8.6
CVE-2017-3790 [HIGH] CWE-399 Cisco Expressway Series and TelePresence VCS Denial of Service Vulnerability
Cisco Expressway Series and TelePresence VCS Denial of Service Vulnerability
A vulnerability in the received packet parser of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) software could allow an unauthenticated, remote attacker to cause a reload of the affected system, resulting in a denial of service (DoS) condition.
The vulnerability is due to insufficient size validation of user-supplied data. An attacker could exploit this vulnerability by sending crafted H.224 data in Real-Time Transport Protocol (RTP) packets in an H.323 call. An exploit could allow the attacker to overflow a buffer in a cache that belongs to the received packet parser, which will result in a crash of the application, resulting in a DoS condition.
Cisco has released software upda
Cisco
Cisco Expressway Series and TelePresence VCS Denial of Service Vulnerability
vendor_cisco·CVSS 3.0
CVE-2017-3790 Cisco Expressway Series and TelePresence VCS Denial of Service Vulnerability
CVE-2017-3790: Cisco Expressway Series and TelePresence VCS Denial of Service Vulnerability
A vulnerability in the received packet parser of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) software could allow an unauthenticated, remote attacker to cause a reload of the affected system, resulting in a denial of service (DoS) condition. The vulnerability is due to insufficient size validation of user-supplied data. An attacker could exploit this vulnerability by sending crafted H.224 data in Real-Time Transport Protocol (RTP) packets in an H.323 call. An exploit could allow the attacker to overflow a buffer in a cache that belongs to the received packet parser, which will result in a crash of the application, resulting in a DoS condition. Cisco has released s
GHSA
GHSA-4776-frm5-r3rr: A vulnerability in the received packet parser of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) software could allow
ghsa_unreviewed·2022-05-13
CVE-2017-3790 [HIGH] CWE-119 GHSA-4776-frm5-r3rr: A vulnerability in the received packet parser of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) software could allow
A vulnerability in the received packet parser of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) software could allow an unauthenticated, remote attacker to cause a reload of the affected system, resulting in a denial of service (DoS) condition. The vulnerability is due to insufficient size validation of user-supplied data. An attacker could exploit this vulnerability by sending crafted H.224 data in Real-Time Transport Protocol (RTP) packets in an H.323 call. An exploit could allow the attacker to overflow a buffer in a cache that belongs to the received packet parser, which will result in a crash of the application, resulting in a DoS condition. All versions of Cisco Expressway Series Software and Cisco TelePresence VCS Software prior to version X8.8.2 are
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.securityfocus.com/bid/95786http://www.securitytracker.com/id/1037697https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170125-expresswayhttp://www.securityfocus.com/bid/95786http://www.securitytracker.com/id/1037697https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170125-expressway
2017-02-01
Published