CVE-2008-0263: Medium severity ingate firewall vulnerability
Published Jan 15, 2008
·Updated
The SIP module in Ingate Firewall before 4.6.1 and SIParator before 4.6.1 does not reuse SIP media ports in unspecified call hold and send-only stream scenarios, which allows remote attackers to cause a denial of service (port exhaustion) via unspecified vectors.
Affected Software
2 affected components
Ingate Firewall<=4.6
Ingate Ingate SIParator<=4.6
Event History
Jan 15, 2008
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-0263?
CVE-2008-0263 is classified as a denial of service vulnerability.
2
How do I fix CVE-2008-0263?
To fix CVE-2008-0263, upgrade Ingate Firewall or SIParator to version 4.6.1 or later.
3
What products are affected by CVE-2008-0263?
CVE-2008-0263 affects Ingate Firewall versions prior to 4.6.1 and Ingate SIParator versions prior to 4.6.1.
4
What type of attack is associated with CVE-2008-0263?
CVE-2008-0263 allows remote attackers to execute a denial of service attack through port exhaustion.
5
Are there any workarounds for CVE-2008-0263?
There are no known workarounds for CVE-2008-0263 other than upgrading the affected software.