CVE-2010-2834: High severity cisco ios vulnerability
Cisco IOS 12.2 through 12.4 and 15.0 through 15.1, Cisco IOS XE 2.5.x and 2.6.x before 2.6.1, and Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6.x before 6.1(5)SU1, 7.x before 7.1(5), and 8.0 before 8.0(2) allow remote attackers to cause a denial of service (device reload or voice-services outage) via crafted SIP registration traffic over UDP, aka Bug IDs CSCtf72678 and CSCtf14987.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2834?
CVE-2010-2834 has a CVSS score ranking it as a high severity vulnerability.
How do I fix CVE-2010-2834?
To fix CVE-2010-2834, upgrade affected Cisco IOS and Unified Communications Manager software to the latest patched version as recommended by Cisco.
What devices are affected by CVE-2010-2834?
CVE-2010-2834 affects Cisco IOS versions 12.2 through 12.4 and 15.0 through 15.1, Cisco IOS XE 2.5.x and 2.6.x before 2.6.1, and various versions of Cisco Unified Communications Manager.
What type of attack does CVE-2010-2834 facilitate?
CVE-2010-2834 allows remote attackers to cause a denial of service, leading to device reloads or crashes.
Is there a workaround for CVE-2010-2834 if I cannot apply the patch?
While no specific workaround is provided, limiting remote access and closely monitoring device logs can help mitigate the risks associated with CVE-2010-2834.