First published: Sat Feb 07 2015(Updated: )
Cisco Unified IP 9900 phones with firmware 9.4(.1) and earlier allow local users to cause a denial of service (device reload) via crafted commands, aka Bug ID CSCup92790.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified IP Phone 9971 Firmware | <=9.4\(.1\) | |
Cisco Unified IP Phone 9971 Firmware | ||
Cisco Unified IP Phone 9951 Firmware | <=9.4\(.1\) | |
Cisco Unified IP Phone 9951 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0601 is considered to have a significant severity due to its potential for local denial of service on affected Cisco Unified IP phones.
To fix CVE-2015-0601, upgrade the firmware of affected Cisco Unified IP phones to a version later than 9.4(.1).
CVE-2015-0601 affects Cisco Unified IP Phones 9951 and 9971 with firmware versions 9.4(.1) and earlier.
CVE-2015-0601 is a local denial of service vulnerability allowing crafted commands to force a device reload.
No, CVE-2015-0601 requires local access to the affected devices for exploitation.