Vigil@nce - Cisco Unified Communications Manager: denials of service
September 2010 by Vigil@nce
This bulletin was written by Vigil@nce : http://vigilance.fr/
SYNTHESIS OF THE VULNERABILITY
An attacker can use SIP messages, in order to generate denials of service on Cisco Unified Communications Manager.
Severity: 2/4
Creation date: 25/08/2010
DESCRIPTION OF THE VULNERABILITY
Two denials of service were announced in Cisco Unified Communications Manager.
An attacker can send a malformed SIP message, in order to stop a process, which leads to a denial of service. [severity:2/4; CSCtd17310, CVE-2010-2837]
An attacker can send a malformed SIP REGISTER message, in order to stop a process, which leads to a denial of service. [severity:2/4; CSCtf66305, CVE-2010-2838]
ACCESS TO THE COMPLETE VIGIL@NCE BULLETIN





News














