Improper input validation in Cisco Voice Operating System - CVE-2017-6779
Published: June 6, 2018 / Updated: June 8, 2018
Cisco Voice Operating System
Detailed vulnerability description
The vulnerability allows a remote attacker to cause DoS condition on the target system.
The vulnerability exists in local file management for certain system log files due to a certain system log file does not have a maximum size restriction. A remote unauthenticated attacker can send specially crafted remote connection requests, increase the size of a system log file so that it consumes most of the disk space and cause the applications functions could operate abnormally.