|
|
|
![]() |
Vulnerability Note VU#145825SISCO OSI stack fails to properly handle malformed packetsOverviewA vulnerability exists in the SISCO OSI stack. If this vulnerability is successfully exploited, an attacker could cause a denial-of-service condition.I. DescriptionThe SISCO OSI stack is a component of the SISCO MMS-EASE, ICCP Toolkit for MMS-EASE, AX-S4 MMS and AX-S4 ICCP products. The SISCO OSI stack fails to properly handle malformed packets. A remote attacker may be able to trigger this vulnerability by sending a specially crafted series of packets to a vulnerable SISCO OSI stack installation.Note that a valid connection is needed to trigger this vulnerability. SISCO has corrected this problem in the latest version of the SISCO OSI stack. SISCO has also released patches to address this issue in older versions of the SISCO OSI stack for Windows.
References
Thanks to Matthew D. Franz for researching and reporting this vulnerability. This document was written by Jeff Gennari.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
|||||||||||||||||||||||||||||||||||||
|
|||||||||||||||||||||||||||||||||||||||