CVE-2011-2564
Summary
| CVE | CVE-2011-2564 |
|---|---|
| State | PUBLISHED |
| Assigner | cisco |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2011-08-29 15:55:01 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | Unspecified vulnerability in the Service Advertisement Framework (SAF) in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 8.x before 8.5(1) and Cisco Intercompany Media Engine 8.x before 8.5(1) allows remote attackers to cause a denial of service (device reload) via crafted SAF packets, aka Bug ID CSCth19417. |
Risk And Classification
Primary CVSS: v2.0 7.8 from [email protected]
AV:N/AC:L/Au:N/C:N/I:N/A:C
Problem Types: NVD-CWE-noinfo | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
NoneIntegrity
NoneAvailability
CompleteAV:N/AC:L/Au:N/C:N/I:N/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Cisco | Intercompany Media Engine | 8.0\(2\) | All | All | All |
| Application | Cisco | Intercompany Media Engine | 8.0\(3\) | All | All | All |
| Application | Cisco | Unified Communications Manager | 8.0 | All | All | All |
| Application | Cisco | Unified Communications Manager | 8.0\(1\) | All | All | All |
| Application | Cisco | Unified Communications Manager | 8.0\(2c\) | All | All | All |
| Application | Cisco | Unified Communications Manager | 8.0\(2c\)su1 | All | All | All |
| Application | Cisco | Unified Communications Manager | 8.0\(3a\) | All | All | All |
| Application | Cisco | Unified Communications Manager | 8.0\(3a\)su1 | All | All | All |
| Application | Cisco | Unified Communications Manager | 8.0\(3a\)su2 | All | All | All |
| Application | Cisco | Unified Communications Manager | 8.0\(3\) | All | All | All |
| Application | Cisco | Unified Communications Manager | 8.5 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Cisco Intercompany Media Engine Bugs Let Remote Users Deny Service - SecurityTracker | af854a3a-2127-422b-91ae-364da2661108 | www.securitytracker.com | |
| Cisco Security Advisory: Cisco Unified Communications Manager Denial of Service Vulnerabilities - Cisco Systems | af854a3a-2127-422b-91ae-364da2661108 | www.cisco.com | Vendor Advisory |
| Cisco Security Advisory: Denial of Service Vulnerabilities in Cisco Intercompany Media Engine - Cisco Systems | af854a3a-2127-422b-91ae-364da2661108 | www.cisco.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.