The encryption-processing feature in Cisco libSRTP before 1.5.3 allows remote attackers to cause a denial of service via crafted fields in SRTP packets, aka Bug ID CSCux00686.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
|
Configuration 7 (hide)
|
Configuration 8 (hide)
|
History
No history.
Information
Published : 2016-04-21 10:59
Updated : 2023-08-15 14:52
NVD link : CVE-2015-6360
Mitre link : CVE-2015-6360
CVE.ORG link : CVE-2015-6360
JSON object : View
Products Affected
cisco
- ip_phone_7800_series_firmware
- jabber_software_development_kit
- unified_ip_phone_7900_series_firmware
- unified_wireless_ip_phone_7920_firmware
- unified_ip_phone_6900_series_firmware
- unified_communications_manager
- webex_meeting_center
- unity_connection
- ip_phone_8800_series_firmware
- dx_series_ip_phones_firmware
- unified_ip_phone_8900_series_firmware
- libsrtp
- adaptive_security_appliance_software
- ios_xe
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer