First published: Sun Sep 16 2012(Updated: )
Cisco Unity Connection (UC) 8.6, 9.0, and 9.5 allows remote attackers to cause a denial of service (CPU consumption) via malformed UDP packets, aka Bug ID CSCtz76269.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unity Connection | =8.6 | |
Cisco Unity Connection | =9.0 | |
Cisco Unity Connection | =9.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-3060 has a moderate severity as it can lead to a denial of service due to CPU consumption.
To fix CVE-2012-3060, upgrade Cisco Unity Connection to a version that is not affected, such as 9.6 or later.
CVE-2012-3060 affects Cisco Unity Connection versions 8.6, 9.0, and 9.5.
Yes, CVE-2012-3060 can be exploited remotely through malformed UDP packets.
CVE-2012-3060 facilitates a denial of service attack by causing excessive CPU consumption on the affected device.