CVE-2008-1158: Input Validation
The Presence Engine (PE) service in Cisco Unified Presence before 6.0(1) allows remote attackers to cause a denial of service (core dump and service interruption) via malformed packets, aka Bug ID CSCsh50164.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-1158?
CVE-2008-1158 is classified as a high severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2008-1158?
To fix CVE-2008-1158, upgrade to the version of Cisco Unified Presence that is not vulnerable, specifically any version after 6.0(1).
What software is affected by CVE-2008-1158?
CVE-2008-1158 affects various versions of Cisco Unified Presence Server, including 1.0, 1.0(1), 1.0(2), 1.0(3), and 6.0.
What type of attack can exploit CVE-2008-1158?
CVE-2008-1158 can be exploited via remote attacks that send malformed packets to the Presence Engine service.
What is the impact of CVE-2008-1158 on services?
The impact of CVE-2008-1158 includes service interruptions and core dumps, leading to denial of service.