First published: Mon Aug 29 2011(Updated: )
Unspecified vulnerability in the Service Advertisement Framework (SAF) in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 8.x before 8.5(1) and Cisco Intercompany Media Engine 8.x before 8.5(1) allows remote attackers to cause a denial of service (device reload) via crafted SAF packets, aka Bug ID CSCth26669.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Communications Manager | =8.0\(2c\) | |
Cisco Unified Communications Manager | =8.0\(3a\)su2 | |
Cisco Unified Communications Manager | =8.0 | |
Cisco Unified Communications Manager | =8.0\(3\) | |
Cisco Unified Communications Manager | =8.5 | |
Cisco Unified Communications Manager | =8.0\(3a\) | |
Cisco Unified Communications Manager | =8.0\(2c\)su1 | |
Cisco Unified Communications Manager | =8.0\(1\) | |
Cisco Unified Communications Manager | =8.0\(3a\)su1 | |
Cisco Intercompany Media Engine | =8.0\(3\) | |
Cisco Intercompany Media Engine | =8.0\(2\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-2563 has been classified as a high severity vulnerability due to its potential to cause denial of service.
To mitigate CVE-2011-2563, upgrade Cisco Unified Communications Manager or Cisco Intercompany Media Engine to version 8.5(1) or later.
CVE-2011-2563 is an unspecified denial of service vulnerability affecting Cisco Unified Communications Manager and Intercompany Media Engine.
CVE-2011-2563 affects Cisco Unified Communications Manager versions 8.x before 8.5(1) and Intercompany Media Engine versions 8.x before 8.5(1).
Yes, CVE-2011-2563 can be exploited remotely by attackers to cause device reloads.