First published: Sun Aug 25 2013(Updated: )
Buffer overflow in Cisco Unified Communications Manager (Unified CM) 7.1(x) before 7.1(5b)su6, 8.5(x) before 8.5(1)su6, 8.6(x) before 8.6(2a)su3, and 9.x before 9.1(2) allows remote authenticated users to execute arbitrary code via unspecified vectors, aka Bug ID CSCud54358.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Communications Manager | =8.6 | |
Cisco Unified Communications Manager | =8.6\(1\) | |
Cisco Unified Communications Manager | =8.6\(1a\) | |
Cisco Unified Communications Manager | =8.6\(2\) | |
Cisco Unified Communications Manager | =8.6\(2a\) | |
Cisco Unified Communications Manager | =8.6\(2a\)su1 | |
Cisco Unified Communications Manager | =8.6\(2a\)su2 | |
Cisco Unified Communications Manager | =9.1\(1\) | |
Cisco Unified Communications Manager | =9.1\(1a\) | |
Cisco Unified Communications Manager | =9.1.1\(a\) | |
Cisco Unified Communications Manager | =7.1\(2a\) | |
Cisco Unified Communications Manager | =7.1\(2a\)su1 | |
Cisco Unified Communications Manager | =7.1\(2b\) | |
Cisco Unified Communications Manager | =7.1\(2b\)su1 | |
Cisco Unified Communications Manager | =7.1\(3\) | |
Cisco Unified Communications Manager | =7.1\(3a\) | |
Cisco Unified Communications Manager | =7.1\(3a\)su1 | |
Cisco Unified Communications Manager | =7.1\(3a\)su1a | |
Cisco Unified Communications Manager | =7.1\(3b\) | |
Cisco Unified Communications Manager | =7.1\(3b\)su1 | |
Cisco Unified Communications Manager | =7.1\(3b\)su2 | |
Cisco Unified Communications Manager | =7.1\(5\) | |
Cisco Unified Communications Manager | =7.1\(5\)su1 | |
Cisco Unified Communications Manager | =7.1\(5\)su1a | |
Cisco Unified Communications Manager | =7.1\(5a\) | |
Cisco Unified Communications Manager | =7.1\(5b\) | |
Cisco Unified Communications Manager | =7.1\(5b\)su1 | |
Cisco Unified Communications Manager | =7.1\(5b\)su1a | |
Cisco Unified Communications Manager | =7.1\(5b\)su2 | |
Cisco Unified Communications Manager | =7.1\(5b\)su3 | |
Cisco Unified Communications Manager | =7.1\(5b\)su4 | |
Cisco Unified Communications Manager | =7.1\(5b\)su5 | |
Cisco Unified Communications Manager | =7.1\(5b\)su6 | |
Cisco Unified Communications Manager | =8.5 | |
Cisco Unified Communications Manager | =8.5\(1\) | |
Cisco Unified Communications Manager | =8.5\(1\)su1 | |
Cisco Unified Communications Manager | =8.5\(1\)su2 | |
Cisco Unified Communications Manager | =8.5\(1\)su3 | |
Cisco Unified Communications Manager | =8.5\(1\)su4 | |
Cisco Unified Communications Manager | =8.5\(1\)su5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-3462 is classified as a critical vulnerability due to its potential to allow remote authenticated users to execute arbitrary code.
To mitigate CVE-2013-3462, update Cisco Unified Communications Manager to versions 7.1(5b)su6, 8.5(1)su6, 8.6(2a)su3, or 9.1(2) or later.
CVE-2013-3462 affects versions 7.1(x) before 7.1(5b)su6, 8.5(x) before 8.5(1)su6, 8.6(x) before 8.6(2a)su3, and 9.x before 9.1(2).
Yes, CVE-2013-3462 can be exploited by remote authenticated users, making it particularly dangerous.
The impact of CVE-2013-3462 includes the execution of arbitrary code, potentially compromising the entire system.