First published: Mon Sep 28 2009(Updated: )
Unspecified vulnerability in Cisco IOS 12.2 through 12.4, when the Cisco Unified Border Element feature is enabled, allows remote attackers to cause a denial of service (device reload) via crafted SIP messages, aka Bug ID CSCsx25880.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Puppet Cisco IOS | =12.4t | |
Puppet Cisco IOS | =12.4xl | |
Puppet Cisco IOS | =12.4xm | |
Puppet Cisco IOS | =12.4mr | |
Puppet Cisco IOS | =12.4xt | |
Puppet Cisco IOS | =12.4gc | |
Puppet Cisco IOS | =12.4ya | |
Puppet Cisco IOS | =12.4xv | |
Puppet Cisco IOS | =12.4xw | |
Puppet Cisco IOS | =12.4xz | |
Puppet Cisco IOS | =12.3yk | |
Puppet Cisco IOS | =12.4xd | |
Puppet Cisco IOS | =12.4xp | |
Puppet Cisco IOS | =12.3yt | |
Puppet Cisco IOS | =12.4xa | |
Puppet Cisco IOS | =12.4xe | |
Puppet Cisco IOS | =12.3ys | |
Puppet Cisco IOS | =12.4xy | |
Puppet Cisco IOS | =12.4xc |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-2870 is classified as a medium severity vulnerability due to its potential to cause denial of service.
To fix CVE-2009-2870, upgrade the Cisco IOS to a version that does not contain the vulnerability.
CVE-2009-2870 affects Cisco IOS versions 12.2 through 12.4 when the Cisco Unified Border Element feature is enabled.
CVE-2009-2870 can be exploited via crafted SIP messages leading to device reload and denial of service.
There is no official workaround for CVE-2009-2870; upgrading the software is recommended.