First published: Sat Feb 07 2015(Updated: )
The mobility extension on Cisco Unified IP 9900 phones with firmware 9.4(.1) and earlier allows remote attackers to cause a denial of service (logoff) via crafted packets, aka Bug ID CSCuq12139.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified IP Phone 9900 Series Firmware | <=9.4\(.1\) | |
Cisco Unified IP Phone 9951 Firmware | ||
Cisco Unified IP Phone 9971 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2015-0600 is considered high due to its potential to cause a denial of service on affected Cisco Unified IP phones.
To fix CVE-2015-0600, upgrade the firmware of vulnerable Cisco Unified IP phones to a version higher than 9.4(.1).
CVE-2015-0600 affects Cisco Unified IP 9900 phones running firmware versions up to 9.4(.1).
CVE-2015-0600 allows remote attackers to perform a denial of service attack by sending crafted packets.
CVE-2015-0600 is a remote vulnerability that can be exploited without physical access to the device.