30
30
45
30
30
30
45
30
30
30
45
30
30
30
30
30
30
30
30
30
30
30
30
30
30
30
Cisco RoomOS Stack Overflow Vulnerability
Cisco fixed a stack overflow in the RoomOS USB driver allowing physical-access attackers to execute code with root privileges.
Insufficient boundary checks in the USB driver of Cisco RoomOS allow a buffer overflow when specific data is supplied through the USB port. An unauthenticated local attacker with physical access can connect a malicious USB device and execute arbitrary code with root privileges. Cisco has released software updates and no workarounds address the issue.
21
30
30
45
30
30
30
30
45
30
30
30
30
30