First published: Thu Jan 16 2020(Updated: )
Cisco Unified Personal Communicator 7.0 (1.13056) does not free allocated memory for received data and does not perform validation if memory allocation is successful, causing a remote denial of service condition.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Personal Communicator | =7.0\(1.13056\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-3048 is considered a high severity vulnerability due to its potential to cause a remote denial of service condition.
To fix CVE-2010-3048, update to the latest version of Cisco Unified Personal Communicator that addresses the memory handling issues.
Exploitation of CVE-2010-3048 may lead to service interruptions or crashes in Cisco Unified Personal Communicator.
CVE-2010-3048 affects users of Cisco Unified Personal Communicator version 7.0(1.13056).
Currently, there are no known workarounds for CVE-2010-3048; updating the software is the recommended approach.