First published: Tue Oct 23 2007(Updated: )
The Nortel UNIStim IP Softphone 2050, IP Phone 1140E, and additional Nortel products from the IP Phone, Business Communications Manager (BCM), and other product lines, use only 65536 different values in the 32-bit ID number field of an RUDP datagram, which makes it easier for remote attackers to guess the RUDP ID and spoof messages. NOTE: this can be leveraged for an eavesdropping attack by sending many Open Audio Stream messages.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nortel Multimedia Communication Server 5100 | ||
Nortel Multimedia Communications Server | ||
Nortel CS1000 | =1000e | |
Nortel CS1000 | =1000m | |
Nortel CS1000 | =1000s | |
Nortel CS1000 | =2100 | |
Nortel IP Audio Conference Phone 2033 | ||
Nortel IP Phone 1110 | ||
Nortel IP Phone 1120E | ||
Nortel IP Phone 1140E | ||
Nortel IP Phone 1150E | ||
Nortel IP phone 2001 | ||
Nortel IP phone 2002 | ||
Nortel IP Phone 2004 | ||
Nortel IP Phone 2007 | ||
Nortel WLAN Handset 2210 | ||
Nortel WLAN Handset 2211 | ||
Nortel WLAN Handset 2212 | ||
Nortel WLAN Handset 6120 | ||
Nortel WLAN Handset 6140 | ||
Nortel Business Communications Manager | =50 | |
Nortel Business Communications Manager | =50a | |
Nortel Business Communications Manager | =50e | |
Nortel Business Communications Manager | =200 | |
Nortel Business Communications Manager | =400 | |
Nortel Business Communications Manager | =1000 | |
Nortel Business Communications Manager | =srg50 | |
Nortel Business Communications Manager | =srg200 | |
Nortel Centrex IP Client Manager | ||
Nortel Centrex IP Element Manager | ||
Nortel Meridian | ||
Nortel Meridian | ||
Nortel Meridian | ||
Nortel Meridian | ||
Nortel Meridian | =cs2100 | |
Nortel Mobile Voice Client 2050 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2007-5638 is considered moderate as it allows for potential remote attacks through exploitation of ID number field limitations.
To fix CVE-2007-5638, ensure that your Nortel products are updated to the latest firmware version that addresses this vulnerability.
Affected products include Nortel IP Softphone 2050, IP Phone 1140E, and various models from the Nortel Business Communications Manager and Meridian series.
Yes, CVE-2007-5638 can be exploited remotely due to its nature of allowing attackers to guess ID numbers in RUDP datagrams.
The potential impacts of CVE-2007-5638 include unauthorized access and the ability to disrupt communication services through successful attacks.