CVE-2013-1129: Medium severity cisco unity connection 8.6 vulnerability
Published Feb 19, 2013
·Updated
Memory leak in Cisco Unity Connection 9.x allows remote attackers to cause a denial of service (memory consumption and process crash) by sending many TCP requests, aka Bug ID CSCud59736.
Affected Software
4 affected components
Cisco Unity Connection=9.0
Cisco Unity Connection=9.1
Cisco Unity Connection=9.1.1
Cisco Unity Connection=9.5
Event History
Feb 19, 2013
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-1129?
CVE-2013-1129 is classified as a high severity vulnerability that enables denial of service through memory consumption and process crash.
2
How do I fix CVE-2013-1129?
To mitigate CVE-2013-1129, it is recommended to apply the latest patches released by Cisco for affected versions of Unity Connection.
3
Which versions of Cisco Unity Connection are affected by CVE-2013-1129?
CVE-2013-1129 affects Cisco Unity Connection versions 9.0, 9.1, 9.1.1, and 9.5.
4
What type of attack does CVE-2013-1129 allow?
CVE-2013-1129 allows remote attackers to conduct a denial of service attack through a memory leak.
5
Can CVE-2013-1129 be exploited remotely?
Yes, CVE-2013-1129 can be exploited remotely by sending numerous TCP requests to the affected systems.