cisco-sa-20160516-vcs

Cisco Video Communication Server Session Initiation Protocol Packet Processing Denial of Service Vulnerability

Medium · Updated · Cisco

1 product with CSAF evidence

A vulnerability in the Session Initiation Protocol (SIP) implementation of the Cisco Video Communications Server (VCS) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to a malformed SIP header message. An attacker could exploit this vulnerability by manipulating the SIP URI. An exploit could allow the attacker to cause a disruption of service to the application. Cisco has released software updates that address this vulnerability. Workarounds that address this vulnerability are not available.