Cisco Unified Communications Manager CTL Provider Heap Buffer Overflow Vulnerability
BID:27313
Info
Cisco Unified Communications Manager CTL Provider Heap Buffer Overflow Vulnerability
| Bugtraq ID: | 27313 |
| Class: | Design Error |
| CVE: |
CVE-2008-0027 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 16 2008 12:00AM |
| Updated: | Jan 18 2008 11:18PM |
| Credit: | Cody Pierce of TippingPoint DVLabs is credited with discovering this issue. |
| Vulnerable: |
Cisco Unified Communications Manager 4.3 Cisco Unified Communications Manager 4.2(3)sr2 Cisco Unified Communications Manager 4.2 (3)SR2b Cisco Unified CallManager 4.1(3)sr5 Cisco Unified CallManager 4.1(3)SR4 Cisco Unified CallManager 4.1 (3)SR5b Cisco Unified CallManager 4.1 Cisco Unified CallManager 4.0 |
| Not Vulnerable: |
Cisco Unified Communications Manager 6.0(1) Cisco Unified Communications Manager 6.0 (1a) Cisco Unified Communications Manager 6.0 Cisco Unified Communications Manager 5.1(2b) Cisco Unified Communications Manager 5.1(2a) Cisco Unified Communications Manager 5.1(2) Cisco Unified Communications Manager 5.1(1) Cisco Unified Communications Manager 4.3(1)Sr.1 Cisco Unified Communications Manager 4.2 (3)SR3 Cisco Unified CallManager 6.0 Cisco Unified CallManager 5.1 Cisco Unified CallManager 5.0 Cisco Unified CallManager 4.1 (3)SR5c Cisco Unified CallManager 3.3 Cisco CallManager Express 0 |
Discussion
Cisco Unified Communications Manager CTL Provider Heap Buffer Overflow Vulnerability
Cisco Unified Communications Manager (formerly known as CallManager) Certificate Trust List (CTL) Provider is prone to a heap-based buffer-overflow vulnerability.
Attackers can exploit this issue to execute arbitrary code or to cause denial-of-service conditions.
This issue affects the following versions:
Unified CallManager 4.0 and 4.1 prior to 4.1(3)SR5c
Unified Communications Manager 4.2 prior to 4.2(3)SR3
Unified Communications Manager 4.3 prior to 4.3(1)SR1
Cisco Unified Communications Manager (formerly known as CallManager) Certificate Trust List (CTL) Provider is prone to a heap-based buffer-overflow vulnerability.
Attackers can exploit this issue to execute arbitrary code or to cause denial-of-service conditions.
This issue affects the following versions:
Unified CallManager 4.0 and 4.1 prior to 4.1(3)SR5c
Unified Communications Manager 4.2 prior to 4.2(3)SR3
Unified Communications Manager 4.3 prior to 4.3(1)SR1
Exploit / POC
Cisco Unified Communications Manager CTL Provider Heap Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Cisco Unified Communications Manager CTL Provider Heap Buffer Overflow Vulnerability
Solution:
The vendor has released fixes that address this issue for some versions of the Unified Communications Manger. Please see the referenced advisory for information on obtaining and applying the fixes.
Solution:
The vendor has released fixes that address this issue for some versions of the Unified Communications Manger. Please see the referenced advisory for information on obtaining and applying the fixes.
References
Cisco Unified Communications Manager CTL Provider Heap Buffer Overflow Vulnerability
References:
References:
- CallManager Product Homepage (Cisco Systems)
- Cisco Applied Mitigation Bulletin: Identifying and Mitigating Exploitation (Cisco)
- Cisco Security Advisory: Cisco Unified Communications Manager CTL Provider Heap (Cisco Systems Product Security Incident Response Team
) - TPTI-08-02: Cisco Call Manager CTLProvider Heap Overflow Vulnerability (DVLabs
) - TPTI-08-02: Cisco Call Manager CTLProvider Heap Overflow Vulnerability (TippingPoint DVLabs)