CVE-2008-1740: Input Validation
Published May 16, 2008
·Updated
The Presence Engine (PE) service in Cisco Unified Presence before 6.0(1) allows remote attackers to cause a denial of service (core dump and service interruption) via an unspecified "stress test," aka Bug ID CSCsh20972.
Affected Software
2 affected components
Cisco Unified Presence<=6.0_2
Cisco Unified Presence=6.0_1
Remediation
Event History
May 16, 2008
CVE Published
via MITRE·06:54 AM
Data Sourced
via MITRE·06:54 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-1740?
CVE-2008-1740 has been classified as a denial of service vulnerability.
2
How do I fix CVE-2008-1740?
To mitigate CVE-2008-1740, upgrade Cisco Unified Presence to version 6.0(1) or later.
3
What does CVE-2008-1740 allow remote attackers to do?
CVE-2008-1740 allows remote attackers to cause a denial of service that results in a core dump and service interruption.
4
What versions of Cisco Unified Presence are affected by CVE-2008-1740?
CVE-2008-1740 affects Cisco Unified Presence versions up to and including 6.0(2) and specifically version 6.0(1).
5
What is the nature of the attack described in CVE-2008-1740?
The attack described in CVE-2008-1740 involves an unspecified "stress test" that leads to service disruption.