First published: Tue Apr 03 2007(Updated: )
Cisco Unified CallManager (CUCM) 5.0 before 5.0(4a)SU1 and Cisco Unified Presence Server (CUPS) 1.0 before 1.0(3) allow remote attackers to cause a denial of service (loss of voice services) via a flood of ICMP echo requests, aka bug ID CSCsf12698.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Presence Server | =1.0 | |
Cisco CallManager Express | =5.0\(2\) | |
Cisco Unified Presence Server | =1.0\(1\) | |
Cisco CallManager Express | =5.0\(3\) | |
Cisco CallManager Express | =5.0\(3a\) | |
Cisco CallManager Express | =5.0\(1\) | |
Cisco CallManager Express | =5.0\(4\) | |
Cisco CallManager Express | =5.0 | |
Cisco Unified Presence Server | =1.0\(2\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-1834 has a moderate severity level due to its potential to disrupt voice services.
To fix CVE-2007-1834, upgrade to Cisco Unified CallManager version 5.0(4a)SU1 or later and Cisco Unified Presence Server version 1.0(3) or later.
CVE-2007-1834 affects Cisco Unified CallManager versions 5.0 and earlier, and Cisco Unified Presence Server versions 1.0 and earlier.
Yes, CVE-2007-1834 can be exploited remotely via a flood of ICMP echo requests that cause denial of service.
Exploiting CVE-2007-1834 results in a denial of service, leading to loss of voice services.