Cisco Unity Connection TCP Segment Denial of Service Vulnerability
BID:52217
Info
Cisco Unity Connection TCP Segment Denial of Service Vulnerability
| Bugtraq ID: | 52217 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2012-0367 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 29 2012 12:00AM |
| Updated: | Feb 29 2012 12:00AM |
| Credit: | Cisco |
| Vulnerable: |
Cisco Unity Connection 8.6 Cisco Unity Connection 8.5 Cisco Unity Connection 8.0 Cisco Unity Connection 7.1 |
| Not Vulnerable: |
Cisco Unity Connection 8.6.2 Cisco Unity Connection 8.5.1(Su3) Cisco Unity Connection 7.1.5b(Su5) |
Discussion
Cisco Unity Connection TCP Segment Denial of Service Vulnerability
Cisco Unity Connection is prone to a denial-of-service vulnerability.
An attacker can exploit this issue to cause an affected device to restart, denying service to legitimate users.
This issue is tracked by Cisco Bug ID CSCtq67899.
Cisco Unity Connection is prone to a denial-of-service vulnerability.
An attacker can exploit this issue to cause an affected device to restart, denying service to legitimate users.
This issue is tracked by Cisco Bug ID CSCtq67899.
Exploit / POC
Cisco Unity Connection TCP Segment Denial of Service Vulnerability
Attackers can use readily available network utilities to exploit this issue.
Attackers can use readily available network utilities to exploit this issue.
Solution / Fix
Cisco Unity Connection TCP Segment Denial of Service Vulnerability
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.
References
Cisco Unity Connection TCP Segment Denial of Service Vulnerability
References:
References: