CVE-2007-3368: Buffer Overflow
Buffer overflow in the HTTP server on the Polycom SoundPoint IP 601 SIP phone with BootROM 3.0.x+ allows remote attackers to cause a denial of service (device reboot) via a malformed CGI parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-3368?
The severity of CVE-2007-3368 is considered high due to the potential for remote denial of service via device reboot.
How do I fix CVE-2007-3368?
To fix CVE-2007-3368, update the BootROM of the Polycom SoundPoint IP 601 phone to a version that addresses this buffer overflow vulnerability.
What devices are affected by CVE-2007-3368?
CVE-2007-3368 specifically affects the Polycom SoundPoint IP 601 SIP phone running BootROM versions 3.0.x and later.
What is the exploit mechanism of CVE-2007-3368?
The exploit mechanism of CVE-2007-3368 involves sending a malformed CGI parameter to the HTTP server on the affected device.
What are the potential impacts of CVE-2007-3368?
The potential impacts of CVE-2007-3368 include remote device reboot, leading to service interruption and denial of availability.