First published: Tue Oct 23 2018(Updated: )
The Mitel MiVoice 5330e VoIP device is affected by memory corruption flaws in the SIP/SDP packet handling functionality. An attacker can exploit this issue remotely, by sending a particular pattern of SIP/SDP packets, to cause a denial of service state in the affected devices and probably remote code execution.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mitel Mivoice 5330e Firmware | <=6.5.0.16 | |
Mitel MiVoice 5330e |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-15497 is classified as a Denial of Service vulnerability affecting the Mitel MiVoice 5330e VoIP device.
To fix CVE-2018-15497, update the Mitel MiVoice 5330e firmware to a patched version beyond 6.5.0.16.
CVE-2018-15497 can lead to a denial of service state, disrupting the normal operation of the Mitel MiVoice 5330e device.
Yes, CVE-2018-15497 can be exploited remotely by sending specific SIP/SDP packets to the vulnerable device.
CVE-2018-15497 specifically affects the Mitel MiVoice 5330e VoIP device running firmware version 6.5.0.16 or earlier.