Vulnslist

find the latest Cisco vulnerabilities

Multiple Cisco Products libSRTP Denial of Service Vulnerability

cisco-sa-20160420-libsrtp · High · Published · Updated

Cisco released version 1.5.3 of the Secure Real-Time Transport Protocol (SRTP) library (libSRTP), which addresses a denial of service (DoS) vulnerability. Multiple Cisco products incorporate a vulnerable version of the libSRTP library. The vulnerability is in the encryption processing subsystem of libSRTP and could allow an unauthenticated, remote attacker to trigger a DoS condition. The vulnerability is due to improper input validation of certain fields of SRTP packets. An attacker could exploit this vulnerability by sending a crafted SRTP packet designed to trigger the issue to an affected device. The impact of this vulnerability on Cisco products may vary depending on the affected product. Details about the impact on each product are outlined in the "Conditions" section of each Cisco bug for this vulnerability. The bug IDs are listed at the top of this advisory and in the table in "Vulnerable Products." This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160420-libsrtp

Cisco advisory · CSAF JSON

Workarounds

Any workarounds will be documented in the Cisco bugs, which are accessible through the Cisco Bug Search Tool["https://bst.cloudapps.cisco.com/bugsearch/bug/BUGID"].

CVEsCVE-2015-6360
Cisco Bug IDsCSCux00686, CSCux00697, CSCux00742, CSCux00748, CSCux00708, CSCux00716, CSCux00729, CSCux01782, CSCux04317, CSCux00711, CSCux00707, CSCux01786, CSCux00745, CSCux37802, CSCux35568
CVSS ScoreBase 7.8
Base 7.8 AV:N/AC:L/Au:N/C:N/I:N/A:C/E:F/RL:U/RC:C
Base 5.0 AV:N/AC:L/Au:N/C:N/I:N/A:P/E:F/RL:OF/RC:C
Base 5.0 AV:N/AC:L/Au:N/C:N/I:N/A:P/E:F/RL:U/RC:C
Product Names From Source
Cisco Unified Wireless IP Phone 7920, Cisco Unity Connection, Cisco Unified Communications Manager, Cisco WebEx Meeting Center, Cisco Unified IP Phone 8900 Series, Cisco IP Phone 8800 Series Software, Cisco Jabber Software Development Kit, Cisco DX Series IP Phones, Cisco IP Phone 7800 Series, Cisco Unified IP Phone 7900 Series, Cisco Unified IP Phone 6900 Series, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.0.45, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.2, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.2.10, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.3, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.4, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.1.11, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.2.9, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.2.12, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.2.16, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.4.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.4.4, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.5, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.5.13, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.5.22, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.5.26, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.2.17, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.5.33, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.5.40, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.5.41, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.5.46, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.5.48, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.5.50, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.5.52, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.5.55, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.2.5.57, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.1.0.104, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.1.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.2, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.2.23, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.2.25, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.1.4, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.1.6, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.2.4, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.2.13, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.2.31, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.2.33, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.2.34, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.2.37, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.2.39, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.2.40, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.2.41, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.3.2.44, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.2, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.1.3, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.1.11, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.2.8, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.3, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.3.8, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.3.9, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.4, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.4.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.4.3, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.4.5, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.4.9, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.5, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.5.6, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.6, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.2.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.7, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.7.3, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.7.15, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.7.22, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.7.23, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.7.26, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.7.28, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.4.7.29, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.5.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.5.1.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.5.1.6, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.5.1.7, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.5.1.14, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.5.1.17, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.5.1.18, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.5.1.19, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.5.1.21, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.5.1.24, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.6.1.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.6.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.6.1.2, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.6.1.5, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.6.1.10, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.6.1.12, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.6.1.13, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.6.1.14, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.6.1.17, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.7.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.7.1.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.7.1.3, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.7.1.4, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.7.1.7, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.7.1.8, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.7.1.11, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.7.1.13, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.7.1.16, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 8.7.1.17, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.2, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.2.10, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.3, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.3.6, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.3.8, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.4, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.4.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.4.5, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.4.17, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.4.20, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.4.24, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.4.7, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.4.26, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.4.29, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.4.33, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.4.37, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.0.4.35, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.1.4, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.2, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.3, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.2.8, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.3.2, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.4, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.4.5, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.5, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.5.10, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.5.12, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.5.15, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.6, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.5.21, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.6.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.6.6, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.6.4, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.6.8, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.1.6.10, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.2.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.2.2, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.2.2.4, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.2.2.7, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.2.3, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.2.2.8, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.2.3.3, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.2.3.4, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.2.0.0, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.2.0.104, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.2.3.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.2.4, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.3.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.3.1.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.3.2, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.3.2.2, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.3.3, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.3.5, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.3.3.1, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.3.3.2, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.3.3.5, Cisco IOS XE Software 3.7.0S, Cisco IOS XE Software 3.7.1S, Cisco IOS XE Software 3.7.2S, Cisco IOS XE Software 3.7.3S, Cisco IOS XE Software 3.7.4S, Cisco IOS XE Software 3.7.5S, Cisco IOS XE Software 3.7.6S, Cisco IOS XE Software 3.7.7S, Cisco IOS XE Software 3.7.8S, Cisco IOS XE Software 3.7.4aS, Cisco IOS XE Software 3.7.2tS, Cisco IOS XE Software 3.7.0xbS, Cisco IOS XE Software 3.7.0bS, Cisco IOS XE Software 3.7.0xaS, Cisco IOS XE Software 3.7.1aS, Cisco IOS XE Software 3.8.0S, Cisco IOS XE Software 3.8.1S, Cisco IOS XE Software 3.8.2S, Cisco IOS XE Software 3.9.1S, Cisco IOS XE Software 3.9.0S, Cisco IOS XE Software 3.9.2S, Cisco IOS XE Software 3.9.0xaS, Cisco IOS XE Software 3.9.1aS, Cisco IOS XE Software 3.9.0aS, Cisco IOS XE Software 3.10.0S, Cisco IOS XE Software 3.10.1S, Cisco IOS XE Software 3.10.2S, Cisco IOS XE Software 3.10.3S, Cisco IOS XE Software 3.10.4S, Cisco IOS XE Software 3.10.5S, Cisco IOS XE Software 3.10.6S, Cisco IOS XE Software 3.10.1xcS, Cisco IOS XE Software 3.10.2aS, Cisco IOS XE Software 3.10.2tS, Cisco IOS XE Software 3.10.1xbS, Cisco IOS XE Software 3.11.1S, Cisco IOS XE Software 3.11.2S, Cisco IOS XE Software 3.11.0S, Cisco IOS XE Software 3.11.3S, Cisco IOS XE Software 3.11.4S, Cisco IOS XE Software 3.12.0S, Cisco IOS XE Software 3.12.1S, Cisco IOS XE Software 3.12.2S, Cisco IOS XE Software 3.12.3S, Cisco IOS XE Software 3.12.0aS, Cisco IOS XE Software 3.12.4S, Cisco IOS XE Software 3.13.0S, Cisco IOS XE Software 3.13.1S, Cisco IOS XE Software 3.13.2S, Cisco IOS XE Software 3.13.3S, Cisco IOS XE Software 3.13.4S, Cisco IOS XE Software 3.13.2aS, Cisco IOS XE Software 3.13.0aS, Cisco IOS XE Software 3.14.0S, Cisco IOS XE Software 3.14.1S, Cisco IOS XE Software 3.14.2S, Cisco IOS XE Software 3.15.0S, Cisco IOS XE Software 3.15.1S, Cisco IOS XE Software 3.15.2S, Cisco IOS XE Software 3.15.1cS, Cisco IOS XE Software 3.16.0S, Cisco IOS XE Software 3.16.1S, Cisco IOS XE Software 3.16.0aS, Cisco IOS XE Software 3.16.1aS, Cisco IOS XE Software 3.16.0bS, Cisco IOS XE Software 3.16.0cS, Cisco IOS XE Software 3.17.0S, Cisco IOS XE Software 17.11.99SW, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, Cisco IOS XE Software

Related Products

Product CVE Evidence
Cisco WebEx Meeting Center CVE-2015-6360 Cisco OpenVuln
Cisco Unity Connection CVE-2015-6360 Cisco OpenVuln
Cisco Unity CVE-2015-6360 Cisco OpenVuln
Cisco Unified Wireless IP Phone 7920 CVE-2015-6360 Cisco OpenVuln
Cisco Unified IP Phone 8900 Series CVE-2015-6360 Cisco OpenVuln
Cisco Unified IP Phone 7900 Series CVE-2015-6360 Cisco OpenVuln
Cisco Unified IP Phone 6900 Series CVE-2015-6360 Cisco OpenVuln
Cisco Unified Communications Manager CVE-2015-6360 Cisco OpenVuln
Cisco Secure Firewall Adaptive Security Appliance (ASA) Software CVE-2015-6360 Cisco OpenVuln
Cisco Jabber Software Development Kit CVE-2015-6360 Cisco OpenVuln
Cisco Jabber CVE-2015-6360 Cisco OpenVuln
Cisco IP phone CVE-2015-6360 Cisco OpenVuln
Cisco IP Phone 8800 Series Software CVE-2015-6360 Cisco OpenVuln
Cisco IP Phone 7800 Series CVE-2015-6360 Cisco OpenVuln
Cisco IOS XE Software CVE-2015-6360 Cisco OpenVuln
Cisco IOS CVE-2015-6360 Cisco OpenVuln
Cisco DX Series IP Phones CVE-2015-6360 Cisco OpenVuln
Cisco Catalyst 9600 Series Switches CVE-2015-6360 Cisco OpenVuln · software-dependent
Cisco Catalyst 9500 Series Switches CVE-2015-6360 Cisco OpenVuln · software-dependent
Cisco Catalyst 9400 Series Switches CVE-2015-6360 Cisco OpenVuln · software-dependent
Cisco Catalyst 9300 Series Switches CVE-2015-6360 Cisco OpenVuln · software-dependent
Cisco Catalyst 9200 Series Switches CVE-2015-6360 Cisco OpenVuln · software-dependent