CVE-2010-0585: High severity Cisco IOS vulnerability
Cisco IOS 12.1 through 12.4, when Cisco Unified Communications Manager Express (CME) or Cisco Unified Survivable Remote Site Telephony (SRST) is enabled, allows remote attackers to cause a denial of service (device reload) via a malformed Skinny Client Control Protocol (SCCP) message, aka Bug ID CSCsz48614, the "SCCP Packet Processing Denial of Service Vulnerability."
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0585?
CVE-2010-0585 is classified as a denial of service vulnerability.
How do I fix CVE-2010-0585?
To mitigate CVE-2010-0585, upgrade to a version of Cisco IOS that does not have the vulnerability.
What software versions are affected by CVE-2010-0585?
CVE-2010-0585 affects various versions of Cisco IOS, specifically 12.1 through 12.4.
Can CVE-2010-0585 be exploited remotely?
Yes, CVE-2010-0585 can be exploited by remote attackers via malformed SCCP messages.
What impact does CVE-2010-0585 have on my network devices?
CVE-2010-0585 can cause affected devices to reload, resulting in temporary network outages.