First published: Tue Nov 01 2011(Updated: )
Memory leak in Cisco Unified Communications Manager (CUCM) 6.x before 6.1(5)su2, 7.x before 7.1(5b)su3, 8.x before 8.0(3a)su1, and 8.5 before 8.5(1), and Cisco IOS 12.4 and 15.1, allows remote attackers to cause a denial of service (memory consumption and process failure or device reload) via a malformed SIP message, aka Bug IDs CSCti75128 and CSCtj09179.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Communications Manager | =6.1\(3a\) | |
Cisco Unified Communications Manager | =8.0\(2c\) | |
Cisco Unified Communications Manager | =6.1\(2\) | |
Cisco Unified Communications Manager | =6.1\(3b\)su1 | |
Cisco Unified Communications Manager | =7.1\(2b\)su1 | |
Cisco Unified Communications Manager | =8.0\(2\) | |
Cisco Unified Communications Manager | =7.1\(2b\) | |
Cisco Unified Communications Manager | =6.1\(2\)su1a | |
Cisco Unified Communications Manager | =7.1\(3b\) | |
Cisco Unified Communications Manager | =6.1\(4\)su1 | |
Cisco Unified Communications Manager | =8.0\(2b\) | |
Cisco Unified Communications Manager | =6.1\(4\) | |
Cisco Unified Communications Manager | =7.1\(2a\)su1 | |
Cisco Unified Communications Manager | =7.1\(3b\)su1 | |
Cisco Unified Communications Manager | =7.1\(3a\)su1a | |
Cisco Unified Communications Manager | =7.1\(5b\)su1 | |
Cisco Unified Communications Manager | =6.1\(5\)su1 | |
Cisco Unified Communications Manager | =6.1\(4a\) | |
Cisco Unified Communications Manager | =6.1\(3\) | |
Cisco Unified Communications Manager | =7.1\(3\) | |
Cisco Unified Communications Manager | =6.1\(4a\)su2 | |
Cisco Unified Communications Manager | =7.1\(2a\) | |
Cisco Unified Communications Manager | =6.1\(1\) | |
Cisco Unified Communications Manager | =7.1\(5b\) | |
Cisco Unified Communications Manager | =7.0\(2a\) | |
Cisco Unified Communications Manager | =8.0 | |
Cisco Unified Communications Manager | =7.0\(1\)su1 | |
Cisco Unified Communications Manager | =7.0\(1\)su1a | |
Cisco Unified Communications Manager | =7.1\(5b\)su2 | |
Cisco Unified Communications Manager | =7.1\(5\) | |
Cisco Unified Communications Manager | =7.1\(5a\) | |
Cisco Unified Communications Manager | =6.1\(1b\) | |
Cisco Unified Communications Manager | =6.1\(3b\) | |
Cisco Unified Communications Manager | =7.0\(2a\)su2 | |
Cisco Unified Communications Manager | =6.1\(5\) | |
Cisco Unified Communications Manager | =7.1\(5b\)su1a | |
Cisco Unified Communications Manager | =7.1\(5\)su1a | |
Cisco Unified Communications Manager | =8.0\(2a\) | |
Cisco Unified Communications Manager | =8.5 | |
Cisco Unified Communications Manager | =7.1\(5\)su1 | |
Cisco Unified Communications Manager | =8.0\(3a\) | |
Cisco Unified Communications Manager | =7.1\(3a\) | |
Cisco Unified Communications Manager | =6.1\(2\)su1 | |
Cisco Unified Communications Manager | =7.0\(2a\)su1 | |
Cisco Unified Communications Manager | =7.1\(3a\)su1 | |
Cisco Unified Communications Manager | =6.0 | |
Cisco Unified Communications Manager | =8.0\(2c\)su1 | |
Cisco Unified Communications Manager | =6.1\(1a\) | |
Cisco Unified Communications Manager | =7.0\(2\) | |
Cisco Unified Communications Manager | =8.0\(1\) | |
Cisco Unified Communications Manager | =7.1\(3b\)su2 | |
Cisco IOS | =15.1 | |
Cisco IOS | =12.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-0941 has been rated as a high severity vulnerability due to its potential to cause denial of service.
To fix CVE-2011-0941, you should upgrade affected Cisco Unified Communications Manager or Cisco IOS software to the recommended versions provided by Cisco.
CVE-2011-0941 affects various versions of Cisco Unified Communications Manager including versions 6.x, 7.x, and 8.x prior to specific updates, as well as Cisco IOS 12.4 and 15.1.
The impact of CVE-2011-0941 includes memory leak issues that may lead to memory consumption, process failures, or device reloads.
Yes, CVE-2011-0941 can be exploited remotely by attackers to cause a denial of service.