SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2014-2172

Buffer overflow in Cisco TelePresence TC Software 4.x and 5.x and TE Software 4.x and 6.0 allows local users to gain privileges by leveraging improper handling of the u-boot compiler flag for internal executable files, aka Bug ID CSCub67693.

MEDIUM 6.6EPSS 0.34%

Does this matter?

Lower severity and a low EPSS score (0.34%). Track it; it rarely justifies an emergency change on its own.

Description

Buffer overflow in Cisco TelePresence TC Software 4.x and 5.x and TE Software 4.x and 6.0 allows local users to gain privileges by leveraging improper handling of the u-boot compiler flag for internal executable files, aka Bug ID CSCub67693.

CVSS 2.0
6.6 MEDIUMAV:L/AC:M/Au:S/C:C/I:C/A:C
EPSS
0.34% probability · 27th percentile
CISA KEV
Not listed
Weakness
CWE-119
Affected
cisco/telepresence tc software · cisco/telepresence te software
Source
psirt@cisco.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.