Vulnerability Description
The Cisco Unified IP Phone 8945 with software 9.3(2) allows remote attackers to cause a denial of service (device hang) via a malformed PNG file, aka Bug ID CSCud04270.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Unified Ip Phone 8945 | - |
| Cisco | Unified Ip Phone Firmware | 9.3 |
Related Weaknesses (CWE)
References
- http://osvdb.org/96669
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-3468Vendor Advisory
- http://www.securitytracker.com/id/1028964Third Party AdvisoryVDB Entry
- http://osvdb.org/96669
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-3468Vendor Advisory
- http://www.securitytracker.com/id/1028964Third Party AdvisoryVDB Entry
FAQ
What is CVE-2013-3468?
CVE-2013-3468 is a vulnerability with a CVSS score of 7.8 (HIGH). The Cisco Unified IP Phone 8945 with software 9.3(2) allows remote attackers to cause a denial of service (device hang) via a malformed PNG file, aka Bug ID CSCud04270.
How severe is CVE-2013-3468?
CVE-2013-3468 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2013-3468?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Unified Ip Phone 8945, Cisco Unified Ip Phone Firmware.