CVE-2010-0580: Critical severity Cisco IOS vulnerability
Unspecified vulnerability in the SIP implementation in Cisco IOS 12.3 and 12.4 allows remote attackers to execute arbitrary code via a malformed SIP message, aka Bug ID CSCsz48680, the "SIP Message Processing Arbitrary Code Execution Vulnerability."
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0580?
CVE-2010-0580 is classified as a critical vulnerability that allows remote attackers to execute arbitrary code via malformed SIP messages.
How do I fix CVE-2010-0580?
To fix CVE-2010-0580, you need to upgrade to a patched version of Cisco IOS that resolves this vulnerability.
Which versions of Cisco IOS are affected by CVE-2010-0580?
CVE-2010-0580 affects Cisco IOS versions 12.3 and 12.4, including various sub-versions.
What type of attack does CVE-2010-0580 enable?
CVE-2010-0580 enables remote code execution attacks through exploitation of SIP message processing.
Can CVE-2010-0580 be exploited over the network?
Yes, CVE-2010-0580 can be exploited remotely over the network, making devices vulnerable if not properly patched.