CVE-2000-0964: Buffer Overflow
Published Dec 19, 2000
·Updated
Buffer overflow in the web administration service for the HiNet LP5100 IP-phone allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long GET request.
Affected Software
1 affected component
Siemens Hinet Lp=5100.0
Event History
Dec 19, 2000
CVE Published
05:00 AM
May 7, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-0964?
CVE-2000-0964 is considered to be of medium severity due to potential for denial of service and remote code execution.
2
How do I fix CVE-2000-0964?
The recommended fix for CVE-2000-0964 is to upgrade to a more secure version of the HiNet LP5100 IP-phone firmware.
3
What systems are affected by CVE-2000-0964?
CVE-2000-0964 specifically affects the Siemens HiNet LP5100 IP-phone version 5100.0.
4
What type of attack does CVE-2000-0964 enable?
CVE-2000-0964 enables remote attackers to cause a denial of service and potentially execute arbitrary commands.
5
Is there a workaround for CVE-2000-0964?
A possible workaround for CVE-2000-0964 is to restrict access to the web administration service from untrusted networks.