The encryption-processing feature in Cisco libSRTP before 1.5.3 allows remote attackers to cause a denial of service via crafted fields in SRTP packets, aka Bug ID CSCux00686.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
|
Configuration 7 (hide)
|
Configuration 8 (hide)
|
Information
Published : 2016-04-21 03:59
Updated : 2017-11-03 18:29
NVD link : CVE-2015-6360
Mitre link : CVE-2015-6360
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
cisco
- libsrtp
- unified_communications_manager
- ip_phone_7800_series_firmware
- adaptive_security_appliance_software
- jabber_software_development_kit
- ios_xe
- unity_connection
- dx_series_ip_phones_firmware
- unified_ip_phone_7900_series_firmware
- unified_ip_phone_6900_series_firmware
- ip_phone_8800_series_firmware
- unified_wireless_ip_phone_7920_firmware
- unified_ip_phone_8900_series_firmware
- webex_meeting_center