CVE-2010-2838
7.8
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:C
Exploitability: 10.0 / Impact: 6.9
Source: NVD
Description
The SendCombinedStatusInfo implementation in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 7.0SU before 7.0(2a)SU3, 7.1 before 7.1(5), and 8.0 before 8.0(3) allows remote attackers to cause a denial of service (process failure) via a malformed SIP REGISTER message, aka Bug ID CSCtf66305.
Affected (25)
Products: Cisco: Unified Communications Manager
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 7.0\(2a\)su2 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 7.1\(5\)su1a |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.0(2c) |
References (4)
Source: psirt@cisco.com
PatchVendor Advisory
Source: psirt@cisco.com
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.