Networking-Forums.com

Professional Discussions => Vendor Advisories => Topic started by: Netwörkheäd on October 12, 2022, 06:01:57 PM

Title: Cisco Security Advisory - Cisco ATA 190 Series Analog Telephone Adapter Software Vulnerabilities
Post by: Netwörkheäd on October 12, 2022, 06:01:57 PM
Cisco ATA 190 Series Analog Telephone Adapter Software Vulnerabilities

Multiple vulnerabilities in the Cisco Discovery Protocol and Link Layer Discovery Protocol (LLDP) for Cisco ATA 190 Series Analog Telephone Adapter Software could allow an attacker to execute code, cause the service to reload unexpectedly, or cause Cisco Discovery Protocol or LLDP database corruption on an affected device.


Note: Cisco Discovery Protocol and LLDP are a Layer 2 protocols. To exploit these vulnerabilities, an attacker must be in the same broadcast domain as the affected device (Layer 2 adjacent).


For more information about these vulnerabilities, see the Details section of this advisory.


Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.


This advisory is available at the following link:
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ata19x-multivuln-GEZYVvs


     
         
Security Impact Rating:  Medium
   
   
       
CVE: CVE-2022-20686,CVE-2022-20687,CVE-2022-20688,CVE-2022-20689,CVE-2022-20690,CVE-2022-20691,CVE-2022-20766
Source: Cisco ATA 190 Series Analog Telephone Adapter Software Vulnerabilities (https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ata19x-multivuln-GEZYVvs?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20ATA%20190%20Series%20Analog%20Telephone%20Adapter%20Software%20Vulnerabilities&vs_k=1)
Title: Re: Cisco Security Advisory - Cisco ATA 190 Series Analog Telephone Adapter Software Vulnerabilities
Post by: Dieselboy on October 14, 2022, 12:09:50 AM
EOL notice:
https://www.cisco.com/c/en/us/products/collateral/unified-communications/ata-190-series-analog-telephone-adapters/eos-eol-notice-c51-741354.html
Title: Re: Cisco Security Advisory - Cisco ATA 190 Series Analog Telephone Adapter Software Vulnerabilities
Post by: deanwebb on October 14, 2022, 09:18:17 AM
So time to get rid of that buggy EOL gear...