CVE-2013-1176
The DSP card on Cisco TelePresence MCU 4500 and 4501 devices before 4.3(2.30), TelePresence MCU MSE 8510 devices before 4.3(2.30), and TelePresence Server before 2.3(1.55) does not properly validate H.264 data, which allows remote attackers to cause a denial of service (device reload) via crafted RTP packets in a (1) SIP session or (2) H.323 session, aka Bug IDs CSCuc11328 and CSCub05448.
Published:Apr 18, 2013
Last Modified:Apr 11, 2025
EPS:Apr 18, 2013
EPSS Score:0.00399
CVSS Score:7.1
Affected Products
Vendor
Product
Action
Vendor
Cisco
Product
Telepresence Mcu 4500 Series Software
Cisco
Telepresence Mcu 4500 Series Software
Vendor
Cisco
Product
Telepresence Mcu 4501
Cisco
Telepresence Mcu 4501
Vendor
Cisco
Product
Telepresence Mcu 4501 Series Software
Cisco
Telepresence Mcu 4501 Series Software
Vendor
Cisco
Product
Telepresence Mcu 4505
Cisco
Telepresence Mcu 4505
Vendor
Cisco
Product
Telepresence Mcu 4510
Cisco
Telepresence Mcu 4510
Vendor
Cisco
Product
Telepresence Mcu 4515
Cisco
Telepresence Mcu 4515
Vendor
Cisco
Product
Telepresence Mcu 4520
Cisco
Telepresence Mcu 4520
Vendor
Cisco
Product
Telepresence Mcu Mse 8510
Cisco
Telepresence Mcu Mse 8510
Vendor
Cisco
Product
Telepresence Mcu Mse Series Software
Cisco
Telepresence Mcu Mse Series Software
Vendor
Cisco
Product
Telepresence Server 7010
Cisco
Telepresence Server 7010
Vendor
Cisco
Product
Telepresence Server Mse 8710
Cisco
Telepresence Server Mse 8710
Vendor
Cisco
Product
Telepresence Server Software
Cisco
Telepresence Server Software
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
