First published: Thu Aug 26 2010(Updated: )
The SIPStationInit implementation in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6.1SU before 6.1(5)SU1, 7.0SU before 7.0(2a)SU3, 7.1SU before 7.1(3b)SU2, 7.1 before 7.1(5), and 8.0 before 8.0(1) allows remote attackers to cause a denial of service (process failure) via a malformed SIP message, aka Bug ID CSCtd17310.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Communications Manager | =6.1\(3a\) | |
Cisco Unified Communications Manager | =6.1\(2\) | |
Cisco Unified Communications Manager | =6.1\(3b\)su1 | |
Cisco Unified Communications Manager | =6.1\(2\)su1a | |
Cisco Unified Communications Manager | =6.1\(4\)su1 | |
Cisco Unified Communications Manager | =6.1\(4\) | |
Cisco Unified Communications Manager | =6.1\(4a\) | |
Cisco Unified Communications Manager | =6.1\(3\) | |
Cisco Unified Communications Manager | =6.1\(4a\)su2 | |
Cisco Unified Communications Manager | =6.1\(1\) | |
Cisco Unified Communications Manager | <=6.1\(5\) | |
Cisco Unified Communications Manager | =6.1\(1b\) | |
Cisco Unified Communications Manager | =6.1\(3b\) | |
Cisco Unified Communications Manager | =6.1\(2\)su1 | |
Cisco Unified Communications Manager | =6.1\(1a\) | |
Cisco Unified Communications Manager | =7.0\(2a\) | |
Cisco Unified Communications Manager | =7.0\(1\)su1 | |
Cisco Unified Communications Manager | =7.0\(1\)su1a | |
Cisco Unified Communications Manager | <=7.0\(2a\)su2 | |
Cisco Unified Communications Manager | =7.0\(2a\)su1 | |
Cisco Unified Communications Manager | =7.0\(2\) | |
Cisco Unified Communications Manager | <=7.1\(5\)su1a | |
Cisco Unified Communications Manager | =7.1\(2b\)su1 | |
Cisco Unified Communications Manager | =7.1\(2b\) | |
Cisco Unified Communications Manager | =7.1\(3b\) | |
Cisco Unified Communications Manager | =7.1\(2a\)su1 | |
Cisco Unified Communications Manager | =7.1\(3b\)su1 | |
Cisco Unified Communications Manager | =7.1\(3a\)su1a | |
Cisco Unified Communications Manager | =7.1\(3\) | |
Cisco Unified Communications Manager | =7.1\(2a\) | |
Cisco Unified Communications Manager | =7.1\(5b\) | |
Cisco Unified Communications Manager | =7.1\(5\) | |
Cisco Unified Communications Manager | =7.1\(5a\) | |
Cisco Unified Communications Manager | =7.1\(5\)su1 | |
Cisco Unified Communications Manager | =7.1\(3a\) | |
Cisco Unified Communications Manager | =7.1\(3a\)su1 | |
Cisco Unified Communications Manager | =7.1\(3b\)su2 | |
Cisco Unified Communications Manager | =8.0\(2c\) | |
Cisco Unified Communications Manager | =8.0\(3\) | |
Cisco Unified Communications Manager | =8.0\(2c\)su1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-2837 has a severity rating that indicates potential denial of service vulnerabilities in Cisco Unified Communications Manager.
To fix CVE-2010-2837, upgrade your Cisco Unified Communications Manager to a version that is not vulnerable, such as 6.1(5)SU1 or later.
CVE-2010-2837 affects Cisco Unified Communications Manager versions prior to specific updates, including 6.1SU, 7.0SU, and 8.0.
The potential impact of CVE-2010-2837 includes process failure, leading to denial of service for users of Cisco Unified Communications Manager.
Currently, there are no known workarounds for CVE-2010-2837, so upgrading is recommended for protection.