Vulnerability Name:

CVE-2017-3790 (CCN-121286)

Assigned:2016-12-21
Published:2017-01-25
Updated:2019-10-03
Summary:A vulnerability in the received packet parser of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) software could allow an unauthenticated, remote attacker to cause a reload of the affected system, resulting in a denial of service (DoS) condition. The vulnerability is due to insufficient size validation of user-supplied data. An attacker could exploit this vulnerability by sending crafted H.224 data in Real-Time Transport Protocol (RTP) packets in an H.323 call. An exploit could allow the attacker to overflow a buffer in a cache that belongs to the received packet parser, which will result in a crash of the application, resulting in a DoS condition. All versions of Cisco Expressway Series Software and Cisco TelePresence VCS Software prior to version X8.8.2 are vulnerable. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. Cisco Bug IDs: CSCus99263.
CVSS v3 Severity:8.6 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H)
7.5 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Changed
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
8.6 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H)
7.5 High (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Changed
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
CVSS v2 Severity:7.8 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Complete
7.8 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Complete
Vulnerability Type:CWE-119
CWE-20
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2017-3790

Source: BID
Type: Third Party Advisory, VDB Entry
95786

Source: CCN
Type: BID-95786
Cisco Expressway Series and Cisco TelePresence VCS CVE-2017-3790 Denial of Service Vulnerability

Source: SECTRACK
Type: UNKNOWN
1037697

Source: XF
Type: UNKNOWN
cisco-expressway-cve20173790-dos(121286)

Source: CCN
Type: Cisco Security Advisory cisco-sa-20170125-expressway
Cisco Expressway Series and TelePresence VCS Denial of Service Vulnerability

Source: CONFIRM
Type: Vendor Advisory
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170125-expressway

Vulnerable Configuration:Configuration 1:
  • cpe:/a:cisco:expressway:x8.1.0:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.1.1:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.1.2:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.1_base:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.2.1:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.2.2:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.2_base:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.5:rc4:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.5.0:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.5.1:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.5.2:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.5.3:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.5_base:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.6.0:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.6.1:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.7.0:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.7.1:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.7.2:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.7.3:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.8.0:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:expressway:x8.8.1:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:telepresence_video_communication_server:x5.2_base:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:telepresence_video_communication_server:x6.0_base:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:telepresence_video_communication_server:x6.1_base:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:telepresence_video_communication_server:x7.0.0:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:telepresence_video_communication_server:x7.0.1:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:telepresence_video_communication_server:x7.0.2:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:telepresence_video_communication_server:x7.0.3:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:telepresence_video_communication_server:x7.1_base:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:telepresence_video_communication_server:x7.2.0:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:telepresence_video_communication_server:x7.2.1:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:telepresence_video_communication_server:x7.2.2:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:cisco:telepresence_video_communication_server:-:*:*:*:control:*:*:*
  • OR cpe:/a:cisco:expressway_series:-:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    cisco expressway x8.1.0
    cisco expressway x8.1.1
    cisco expressway x8.1.2
    cisco expressway x8.1_base
    cisco expressway x8.2.1
    cisco expressway x8.2.2
    cisco expressway x8.2_base
    cisco expressway x8.5 rc4
    cisco expressway x8.5.0
    cisco expressway x8.5.1
    cisco expressway x8.5.2
    cisco expressway x8.5.3
    cisco expressway x8.5_base
    cisco expressway x8.6.0
    cisco expressway x8.6.1
    cisco expressway x8.7.0
    cisco expressway x8.7.1
    cisco expressway x8.7.2
    cisco expressway x8.7.3
    cisco expressway x8.8.0
    cisco expressway x8.8.1
    cisco telepresence video communication server x5.2_base
    cisco telepresence video communication server x6.0_base
    cisco telepresence video communication server x6.1_base
    cisco telepresence video communication server x7.0.0
    cisco telepresence video communication server x7.0.1
    cisco telepresence video communication server x7.0.2
    cisco telepresence video communication server x7.0.3
    cisco telepresence video communication server x7.1_base
    cisco telepresence video communication server x7.2.0
    cisco telepresence video communication server x7.2.1
    cisco telepresence video communication server x7.2.2
    cisco telepresence video communication server -
    cisco expressway series -