Cisco Unified Communications Manager CAPF Service Denial of Service Vulnerability
BID:33379
Info
Cisco Unified Communications Manager CAPF Service Denial of Service Vulnerability
| Bugtraq ID: | 33379 |
| Class: | Input Validation Error |
| CVE: |
CVE-2009-0057 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 21 2009 12:00AM |
| Updated: | Jan 21 2009 06:32PM |
| Credit: | Reported by the vendor |
| Vulnerable: |
Cisco Unified Communications Manager 6.1(2) Cisco Unified Communications Manager 6.1(1a) Cisco Unified Communications Manager 6.1(1) Cisco Unified Communications Manager 6.1 (2)su1 Cisco Unified Communications Manager 6.1 Cisco Unified Communications Manager 6.0(1) Cisco Unified Communications Manager 6.0 (1a) Cisco Unified Communications Manager 6.0 Cisco Unified Communications Manager 5.1(3d) Cisco Unified Communications Manager 5.1(3C) Cisco Unified Communications Manager 5.1(3a) Cisco Unified Communications Manager 5.1(3) Cisco Unified Communications Manager 5.1(2b) Cisco Unified Communications Manager 5.1(2a) Cisco Unified Communications Manager 5.1(2) Cisco Unified Communications Manager 5.1(1) |
| Not Vulnerable: |
Cisco Unified Communications Manager 6.1(3) Cisco Unified Communications Manager 5.1(3e) |
Discussion
Cisco Unified Communications Manager CAPF Service Denial of Service Vulnerability
Cisco Unified Communications Manager is prone to a denial-of-service vulnerability because it fails to handle malformed input.
An attacker can exploit this issue to cause an interruption in voice services.
This issue is tracked by Cisco Bug ID CSCsq32032.
Cisco Unified Communications Manager is prone to a denial-of-service vulnerability because it fails to handle malformed input.
An attacker can exploit this issue to cause an interruption in voice services.
This issue is tracked by Cisco Bug ID CSCsq32032.
Exploit / POC
Cisco Unified Communications Manager CAPF Service Denial of Service Vulnerability
To exploit this issue, attackers can use readily available network utilities.
To exploit this issue, attackers can use readily available network utilities.
Solution / Fix
Cisco Unified Communications Manager CAPF Service Denial of Service Vulnerability
Solution:
The vendor has released updates. Please see the referenced advisory for details.
Solution:
The vendor has released updates. Please see the referenced advisory for details.
References
Cisco Unified Communications Manager CAPF Service Denial of Service Vulnerability
References:
References: