CVE-2007-3317: High severity Avaya one-X vulnerability
Published Jun 21, 2007
·Updated
The Session Initiation Protocol (SIP) User Access Client (UAC) message parsing module in Avaya one-X Desktop Edition 2.1.0.70 and earlier allows remote attackers to cause a denial of service (device crash) via a malformed SIP message.
Affected Software
1 affected component
Avaya one-X<=2.1.0.70
Remediation
Patch Available
Event History
Jun 21, 2007
CVE Published
06:30 PM
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-3317?
CVE-2007-3317 is classified as a denial of service vulnerability that can lead to a device crash.
2
How do I fix CVE-2007-3317?
To remediate CVE-2007-3317, users should upgrade to Avaya one-X Desktop Edition version 2.1.0.71 or later.
3
What type of attacks does CVE-2007-3317 allow?
CVE-2007-3317 allows remote attackers to crash the device by sending a malformed SIP message.
4
Which versions of Avaya one-X are affected by CVE-2007-3317?
Avaya one-X Desktop Edition versions 2.1.0.70 and earlier are affected by CVE-2007-3317.
5
What is the impact of CVE-2007-3317 on users?
The impact of CVE-2007-3317 on users is a potential denial of service, resulting in a device crash.