First published: Sat Sep 08 2007(Updated: )
The Thomson ST 2030 SIP phone with software 1.52.1 allows remote attackers to cause a denial of service (device hang) via (1) an empty SIP message or (2) a SIP INVITE message with a malformed To header, different vectors than CVE-2007-4553.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Thomson ST 2030 SIP phone | =1.52.1-firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-4753 is classified as a denial of service vulnerability.
To mitigate CVE-2007-4753, ensure that your Thomson ST 2030 SIP phone is updated to a patched version or consider disabling SIP functionality.
Attack vectors for CVE-2007-4753 include sending an empty SIP message or a malformed SIP INVITE message with an incorrect To header.
CVE-2007-4753 specifically affects the Thomson ST 2030 SIP phone running software version 1.52.1.
Yes, CVE-2007-4753 can be exploited by remote attackers to cause the device to hang.