
=====================================================================

                           CERT-Renater

               Note d'Information No. 2014/VULN020
_____________________________________________________________________

DATE                : 23/01/2014

HARDWARE PLATFORM(S): Cisco TelePresence ISDN GW 3241,
                      Cisco TelePresence ISDN GW MSE 8321.

OPERATING SYSTEM(S):  Cisco TelePresence ISDN Gateway Software version
                        prior to 2.2(1.92).

======================================================================
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140122-isdngw
______________________________________________________________________

Cisco Security Advisory: Cisco TelePresence ISDN Gateway D-Channel
Denial of Service Vulnerability

Advisory ID: cisco-sa-20140122-isdngw

Revision 1.0

For Public Release 2014 January 22 16:00  UTC (GMT)

+---------------------------------------------------------------------

Summary
=======

Cisco TelePresence ISDN Gateway contains a vulnerability that could
allow an unauthenticated, remote attacker to trigger the drop of the
data channel (D-channel) causing all calls to be terminated and
preventing users from making new calls.

Cisco has released free software updates that address this
vulnerability. No workarounds that mitigate this vulnerability are
available. This advisory is available at the following link:

http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140122-isdngw


=========================================================
Serveur de référence du CERT-Renater
https://services.renater.fr/ssi/
==========================================================
+ CERT-RENATER          | tel : 01-53-94-20-44           +
+ 23 - 25 Rue Daviel    | fax : 01-53-94-20-41           +
+ 75013 Paris           | email: cert@support.renater.fr +
==========================================================
