HIGH · 7.8

CVE-2014-2159

The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted packets, aka Bug ID CSCtq78722.

Vulnerability Description

The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted packets, aka Bug ID CSCtq78722.

CVSS Score

7.8

HIGH

AV:N/AC:L/Au:N/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
CiscoTelepresence System Software<= f9.3
CiscoTandberg 2000 Mxp-
CiscoTandberg 550 Mxp-
CiscoTandberg 770 Mxp-
CiscoTandberg 880 Mxp-
CiscoTandberg 990 Mxp-
CiscoTelepresence System 1000 Mxp-
CiscoTelepresence System 1700 Mxp-
CiscoTelepresence System Codec 3000 Mxp-
CiscoTelepresence System Codec 6000 Mxp-
CiscoTelepresence System Edge 75 Mxp-
CiscoTelepresence System Edge 85 Mxp-
CiscoTelepresence System Edge 95 Mxp-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2014-2159?

CVE-2014-2159 is a vulnerability with a CVSS score of 7.8 (HIGH). The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted packets, aka Bug ID CSCtq78722.

How severe is CVE-2014-2159?

CVE-2014-2159 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2014-2159?

Check the references section above for vendor advisories and patch information. Affected products include: Cisco Telepresence System Software, Cisco Tandberg 2000 Mxp, Cisco Tandberg 550 Mxp, Cisco Tandberg 770 Mxp, Cisco Tandberg 880 Mxp.