First published: Thu Aug 26 2010(Updated: )
The Presence Engine (PE) service in Cisco Unified Presence 6.x before 6.0(7) and 7.x before 7.0(8) does not properly handle an erroneous Contact field in the header of a SIP SUBSCRIBE message, which allows remote attackers to cause a denial of service (process failure) via a malformed message, aka Bug ID CSCtd39629.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Presence | =6.0 | |
Cisco Unified Presence | =6.0\(2\) | |
Cisco Unified Presence | =6.0\(3\) | |
Cisco Unified Presence | =6.0\(4\) | |
Cisco Unified Presence | =6.0\(5\) | |
Cisco Unified Presence | =6.0\(6\) | |
Cisco Unified Presence | =7.0 | |
Cisco Unified Presence | =7.0\(2\) | |
Cisco Unified Presence | =7.0\(3\) | |
Cisco Unified Presence | =7.0\(4\) | |
Cisco Unified Presence | =7.0\(5\) | |
Cisco Unified Presence | =7.0\(6\) | |
Cisco Unified Presence | =7.0\(7\) | |
Cisco Unified Presence | =6.0\(2.1101\) | |
Cisco Unified Presence | =6.0\(3.1101-2\) | |
Cisco Unified Presence | =6.0\(4.1101-5\) | |
Cisco Unified Presence | =6.0\(5.1101-1\) | |
Cisco Unified Presence | =6.0\(5.1103-2\) | |
Cisco Unified Presence | =6.0.5.1102-1 | |
Cisco Unified Presence | =7.0.3.10102-3 | |
Cisco Unified Presence | =7.0.3.10103-2 | |
Cisco Unified Presence | =7.0.4.10101-2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-2840 has been classified as a high severity vulnerability because it allows remote attackers to cause a denial of service.
To mitigate CVE-2010-2840, upgrade your Cisco Unified Presence Server to versions 6.0(7), 7.0(8) or later.
CVE-2010-2840 affects Cisco Unified Presence Server versions 6.x before 6.0(7) and 7.x before 7.0(8).
CVE-2010-2840 can cause process failures resulting in a denial of service condition on affected servers.
Yes, CVE-2010-2840 can be exploited by sending a malformed SIP SUBSCRIBE message.