Cisco IOS SIP Message Processing Denial of Service Vulnerability
BID:66465
Info
Cisco IOS SIP Message Processing Denial of Service Vulnerability
| Bugtraq ID: | 66465 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2014-2106 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 26 2014 12:00AM |
| Updated: | May 23 2017 04:25PM |
| Credit: | Cisco |
| Vulnerable: |
Rockwell Automation Stratix 5900 0 Cisco IOS XE 3.10.1S Cisco IOS XE 3.10.0S Cisco IOS 15.3(3)M1 Cisco IOS 15.3(3)M |
| Not Vulnerable: |
Rockwell Automation Stratix 5900 15.6.3 Cisco IOS XE 3.10.2S |
Discussion
Cisco IOS SIP Message Processing Denial of Service Vulnerability
Cisco IOS is prone to a remote denial-of-service vulnerability that affects the SIP implementation.
An attacker can exploit this issue to cause an affected device to reload, denying service to legitimate users.
This issue is being tracked by Cisco Bug ID CSCug45898.
Cisco IOS is prone to a remote denial-of-service vulnerability that affects the SIP implementation.
An attacker can exploit this issue to cause an affected device to reload, denying service to legitimate users.
This issue is being tracked by Cisco Bug ID CSCug45898.
Exploit / POC
Cisco IOS SIP Message Processing Denial of Service Vulnerability
To exploit these issues, attackers can use readily available utilities for generating SIP messages.
To exploit these issues, attackers can use readily available utilities for generating SIP messages.
Solution / Fix
Cisco IOS SIP Message Processing Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Cisco IOS SIP Message Processing Denial of Service Vulnerability
References:
References: