CVE-2016-1466: High severity cisco unified communications manager im and presence vulnerability
Cisco Unified Communications Manager IM and Presence Service 9.1(1) SU6, 9.1(1) SU6a, 9.1(1) SU7, 10.5(2) SU2, 10.5(2) SU2a, 11.0(1) SU1, and 11.5(1) allows remote attackers to cause a denial of service (sipd process restart) via crafted headers in a SIP packet, aka Bug ID CSCva39072.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-1466?
CVE-2016-1466 has a critical severity rating as it allows remote attackers to initiate a denial of service by causing the sipd process to restart.
How do I fix CVE-2016-1466?
To fix CVE-2016-1466, update the affected Cisco Unified Communications Manager IM and Presence Service to a patched version provided by Cisco.
Which versions are affected by CVE-2016-1466?
CVE-2016-1466 affects Cisco Unified Communications Manager IM and Presence Service versions 9.1(1), 10.5(2), 11.0(1), and 11.5(1).
What type of vulnerability is CVE-2016-1466?
CVE-2016-1466 is categorized as a denial of service (DoS) vulnerability.
Can CVE-2016-1466 be exploited remotely?
Yes, CVE-2016-1466 can be exploited remotely through crafted headers in a SIP packet.