← Back

CVE-2008-0531

nvd nist
Published: Feb 15, 2008Modified: Apr 23, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Heap-based buffer overflow in Cisco Unified IP Phone 7940, 7940G, 7960, and 7960G running SIP firmware might allow remote SIP servers to execute arbitrary code via a crafted challenge/response message.

Affected (2)

2 products
Configuration A
1 vulnerable · 8 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Cisco
Unified Ip Phone
Version 7906g
Cisco
Unified Ip Phone
Version 7911g
Cisco
Unified Ip Phone
Version 7935
Cisco
Unified Ip Phone
Version 7936
Cisco
Unified Ip Phone
Version 7941g
Cisco
Unified Ip Phone
Version 7961g
Cisco
Unified Ip Phone
Version 7970g
Cisco
Unified Ip Phone
Version 7971g
Configuration B
1 vulnerable · 4 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Cisco
Unified Ip Phone
Version 7940
Cisco
Unified Ip Phone
Version 7940g
Cisco
Unified Ip Phone
Version 7960
Cisco
Unified Ip Phone
Version 7960g

References (12)

Source: psirt@cisco.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.