Cisco Security Advisory - Cisco ATA 190 Series Analog Telephone Adapter Software Vulnerabilities

Started by Netwörkheäd, October 12, 2022, 06:01:57 PM

Previous topic - Next topic

Netwörkheäd

Cisco ATA 190 Series Analog Telephone Adapter Software Vulnerabilities

Multiple vulnerabilities in the Cisco Discovery Protocol and Link Layer Discovery Protocol (LLDP) for Cisco ATA 190 Series Analog Telephone Adapter Software could allow an attacker to execute code, cause the service to reload unexpectedly, or cause Cisco Discovery Protocol or LLDP database corruption on an affected device.


Note: Cisco Discovery Protocol and LLDP are a Layer 2 protocols. To exploit these vulnerabilities, an attacker must be in the same broadcast domain as the affected device (Layer 2 adjacent).


For more information about these vulnerabilities, see the Details section of this advisory.


Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.


This advisory is available at the following link:
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ata19x-multivuln-GEZYVvs


     
         
Security Impact Rating:  Medium
   
   
       
CVE: CVE-2022-20686,CVE-2022-20687,CVE-2022-20688,CVE-2022-20689,CVE-2022-20690,CVE-2022-20691,CVE-2022-20766
Source: Cisco ATA 190 Series Analog Telephone Adapter Software Vulnerabilities
Let's not argue. Let's network!


deanwebb

Take a baseball bat and trash all the routers, shout out "IT'S A NETWORK PROBLEM NOW, SUCKERS!" and then peel out of the parking lot in your Ferrari.
"The world could perish if people only worked on things that were easy to handle." -- Vladimir Savchenko
Вопросы есть? Вопросов нет! | BCEB: Belkin Certified Expert Baffler | "Plan B is Plan A with an element of panic." -- John Clarke
Accounting is architecture, remember that!
Air gaps are high-latency Internet connections.