CVE-2016-1479: Input Validation
Cisco IP Phone 8800 devices with software 11.0(1) allow remote attackers to cause a denial of service (memory corruption) via a crafted HTTP request, aka Bug ID CSCuz03038.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-1479?
CVE-2016-1479 is classified as a high severity vulnerability due to its potential to cause a denial of service through memory corruption.
How do I fix CVE-2016-1479?
To fix CVE-2016-1479, upgrade the Cisco IP Phone 8800 devices to the latest firmware version that addresses this vulnerability.
What types of devices are affected by CVE-2016-1479?
CVE-2016-1479 specifically affects Cisco IP Phone 8800 devices running firmware version 11.0(1).
What kind of attack can exploit CVE-2016-1479?
CVE-2016-1479 can be exploited by remote attackers sending crafted HTTP requests to the vulnerable devices.
Is there a known workaround for CVE-2016-1479?
There are currently no documented workarounds for CVE-2016-1479, so upgrading the firmware is the recommended solution.