PT-2010-4332 · Cisco · Cisco Unified Communications Manager

Published

2010-08-26

·

Updated

2010-09-09

·

CVE-2010-2837

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Cisco Unified Communications Manager versions 6.1SU before 6.1(5)SU1 Cisco Unified Communications Manager versions 7.0SU before 7.0(2a)SU3 Cisco Unified Communications Manager versions 7.1SU before 7.1(3b)SU2 Cisco Unified Communications Manager versions 7.1 before 7.1(5) Cisco Unified Communications Manager versions 8.0 before 8.0(1)
Description The issue allows remote attackers to cause a denial of service via a malformed SIP message.
Recommendations For versions 6.1SU before 6.1(5)SU1, update to 6.1(5)SU1 or later. For versions 7.0SU before 7.0(2a)SU3, update to 7.0(2a)SU3 or later. For versions 7.1SU before 7.1(3b)SU2, update to 7.1(3b)SU2 or later. For versions 7.1 before 7.1(5), update to 7.1(5) or later. For versions 8.0 before 8.0(1), update to 8.0(1) or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2010-2837

Affected Products

Cisco Unified Communications Manager