Boletines de Vulnerabilidades

Cisco IOS Software Session Initiation Protocol Denial of Service Vulnerability


Información sobre el sistema

   
Software afectado Cisco

Descripción

A vulnerability in the Session Initiation Protocol (SIP) implementation in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a reload of an affected device. To exploit this vulnerability, affected devices must be configured to process SIP messages.Cisco has released free software updates that address this vulnerability. There are no workarounds for devices that must run SIP; however, mitigations are available to limit exposure to this

More info:

http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140924-sip?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20IOS%20Software%20Session%20Initiation%20Protocol%20Denial%20of%20Servi

Identificadores estándar

Propiedad Valor
CVE CVE-2014-3360.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-10-14

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT