#VU19026 Buffer overflow in Cisco Systems, Inc products - CVE-2019-1892
Published: July 8, 2019
Cisco Small Business 500 Series Stackable Managed Switches
Cisco Small Business 300 Series Managed Switches
Cisco Small Business 200 Series Smart Switches
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to cause a memory corruption on affected devices.
The vulnerability exists due to improper validation of HTTPS packets in the Secure Sockets Layer (SSL) input packet processor. A remote attacker can send a malformed HTTPS packet to the management web interface and cause an unexpected reload of the devices, resulting in a denial of service (DoS) condition.