CVE-2008-1744: Input Validation
The Certificate Authority Proxy Function (CAPF) service in Cisco Unified Communications Manager (CUCM) 4.1 before 4.1(3)SR7, 4.2 before 4.2(3)SR4, and 4.3 before 4.3(2) allows remote attackers to cause a denial of service (service crash) via malformed network traffic, aka Bug ID CSCsk46770.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-1744?
CVE-2008-1744 is classified with a moderate severity due to its potential to cause a denial of service affecting Cisco Unified Communications Manager.
How do I fix CVE-2008-1744?
To fix CVE-2008-1744, upgrade your Cisco Unified Communications Manager to the version that includes the appropriate security patch provided by Cisco.
What systems are affected by CVE-2008-1744?
CVE-2008-1744 affects multiple versions of Cisco Unified Communications Manager, specifically versions prior to 4.1(3)SR7, 4.2(3)SR4, and 4.3(2).
Can CVE-2008-1744 be exploited remotely?
Yes, CVE-2008-1744 can be exploited remotely through malformed network traffic targeting the CAPF service.
What type of attack does CVE-2008-1744 facilitate?
CVE-2008-1744 facilitates a denial of service attack by causing the Cisco Unified Communications Manager service to crash.