cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
300
Views
0
Helpful
1
Replies

OpenSSL CVE-2016-2181 Denial of Service Vulnerability

Hey Folks,

I'm stucked with below CVE from Cisco.Can you guys advise cisco voice using any openssl protocol.

OpenSSL is an open-source implementation of the SSL protocol that is used by a number of other projects, including,

but not limited to Apache, Sendmail, and Bind. It is commonly found on Linux and UNIX systems.

OpenSSL is a local prone to a denial-of-service vulnerability that occurs due to an out-of-bounds read error. Specifically,

this issue occurs because it fails to properly check the message length.

A local attacker can exploit this issue to cause a denial-of-service condition.

Versions prior to OpenSSL 1.1.0 are vulnerable.

Iniyan

1 Reply 1

Adarsh Chauhan
Level 3
Level 3

Hi,

The description of vulnerability that you have mentioned matches with the following CVE-ID:

CVE-2016-6306.

List of Cisco Products affected by the vulnerability.

Please rate and mark correct if helpful

Regards,

Adarsh Chauhan


Please rate and mark correct if helpful
Regards,
Adarsh Chauhan