Multiple Vulnerabilities in Cisco Unified Videoconferencing Products

Related Vulnerabilities: CVE-2010-3038   CVE-2010-3037  

This is the Cisco Product Security Incident Response Team (PSIRT) security advisory related to a posting entitled "Cisco Unified Videoconferencing multiple vulnerabilities" by Florent Daigniere of Matta Consulting regarding vulnerabilities in the Cisco Unified Videoconferencing (Cisco UVC) 5100 series products. Several of the vulnerabilities also impact Cisco Unified Videoconferencing 5200 and 3500 Series Products. Cisco has released software updates that address these vulnerabilities. Workarounds that mitigate some of these vulnerabilities are available. This advisory is posted at http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20101206-cuvc.