First published: Wed Jun 27 2007(Updated: )
Buffer overflow in the SIP header parsing module in the Nortel PC Client SIP Soft Phone 4.1 3.5.208[20051015] allows remote attackers to execute arbitrary code via a malformed message, a different vulnerability than CVE-2007-3361.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nortel Sip Softphone | =4.13.5.208 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3438 has a severity rating of high due to its potential for remote code execution.
To fix CVE-2007-3438, update the Nortel PC Client SIP Soft Phone to version 4.13.5.209 or later.
CVE-2007-3438 is a buffer overflow vulnerability related to SIP header parsing.
CVE-2007-3438 allows remote attackers to execute arbitrary code on affected systems.
CVE-2007-3438 affects Nortel SIP Soft Phone version 4.13.5.208.