First published: Fri Mar 05 2010(Updated: )
The CMSIPUtility component in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 7.x before 7.1(3a)su1 and 8.x before 8.0(1) allows remote attackers to cause a denial of service (process failure) via a malformed SIP Register message, aka Bug ID CSCtc37188.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Communications Manager Session Management Edition | =7.1 | |
Cisco Unified Communications Manager Session Management Edition | =8.0 | |
Cisco Unified Communications Manager Session Management Edition | =7.0\(1\) | |
Cisco Unified Communications Manager Session Management Edition | =7.0 | |
Cisco Unified Communications Manager Session Management Edition | =7.0\(2\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-0590 has been classified as a denial of service vulnerability.
To address CVE-2010-0590, upgrade Cisco Unified Communications Manager to version 7.1(3a)su1 or 8.0(1) or later.
CVE-2010-0590 allows remote attackers to cause a denial of service by sending a malformed SIP Register message.
CVE-2010-0590 affects Cisco Unified Communications Manager versions 7.x before 7.1(3a)su1 and 8.x before 8.0(1).
The CMSIPUtility component in Cisco Unified Communications Manager is vulnerable to CVE-2010-0590.