-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

===========================================================================
             AUSCERT External Security Bulletin Redistribution

                               ESB-2013.0554
     Cisco TelePresence Infrastructure Denial of Service Vulnerability
                               18 April 2013

===========================================================================

        AusCERT Security Bulletin Summary
        ---------------------------------

Product:           Cisco TelePresence MCU
                   Cisco TelePresence Server
Publisher:         Cisco Systems
Operating System:  Cisco
Impact/Access:     Denial of Service -- Remote/Unauthenticated
Resolution:        Patch/Upgrade
CVE Names:         CVE-2013-1176  

Original Bulletin: 
   http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130417-tpi

- --------------------------BEGIN INCLUDED TEXT--------------------

- -----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Cisco Security Advisory: Cisco TelePresence Infrastructure Denial of Service Vulnerability

Advisory ID: cisco-sa-20130417-tpi

Revision 1.0

For Public Release 2013 April 17 16:00  UTC (GMT)

+------------------------------------------------------------------------------

Summary
=======

Cisco TelePresence multipoint control unit (MCU) and Cisco TelePresence Server
contain a vulnerability that could allow an unauthenticated, remote attacker to
trigger the reload of an affected system.

Cisco has released free software updates that address this vulnerability.
Workarounds that mitigate this vulnerability are not available. This advisory
is available at the following link:
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130417-tpi
- -----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)

iF4EAREIAAYFAlFu1F0ACgkQUddfH3/BbTrooAD9Hd1bHNtH6qE25KH2qSKx0Xd5
55+2JOZHT4CmjoVhaSMA+wWqGdVUbbtVtzIK0OZ4b/7tVRNtTmtoIjr9FA60WxWS
=8gT5
- -----END PGP SIGNATURE-----

- --------------------------END INCLUDED TEXT--------------------

You have received this e-mail bulletin as a result of your organisation's
registration with AusCERT. The mailing list you are subscribed to is
maintained within your organisation, so if you do not wish to continue
receiving these bulletins you should contact your local IT manager. If
you do not know who that is, please send an email to auscert@auscert.org.au
and we will forward your request to the appropriate person.

NOTE: Third Party Rights
This security bulletin is provided as a service to AusCERT's members.  As
AusCERT did not write the document quoted above, AusCERT has had no control
over its content. The decision to follow or act on information or advice
contained in this security bulletin is the responsibility of each user or
organisation, and should be considered in accordance with your organisation's
site policies and procedures. AusCERT takes no responsibility for consequences
which may arise from following or acting on information or advice contained in
this security bulletin.

NOTE: This is only the original release of the security bulletin.  It may
not be updated when updates to the original are made.  If downloading at
a later date, it is recommended that the bulletin is retrieved directly
from the author's website to ensure that the information is still current.

Contact information for the authors of the original document is included
in the Security Bulletin above.  If you have any questions or need further
information, please contact them directly.

Previous advisories and external security bulletins can be retrieved from:

        http://www.auscert.org.au/render.html?cid=1980

===========================================================================
Australian Computer Emergency Response Team
The University of Queensland
Brisbane
Qld 4072

Internet Email: auscert@auscert.org.au
Facsimile:      (07) 3365 7031
Telephone:      (07) 3365 4417 (International: +61 7 3365 4417)
                AusCERT personnel answer during Queensland business hours
                which are GMT+10:00 (AEST).
                On call after hours for member emergencies only.
===========================================================================
-----BEGIN PGP SIGNATURE-----
Comment: http://www.auscert.org.au/render.html?it=1967
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=kuEG
-----END PGP SIGNATURE-----