First published: Fri May 03 2019(Updated: )
A vulnerability in the call-handling functionality of Session Initiation Protocol (SIP) Software for Cisco IP Phone 7800 Series and 8800 Series could allow an unauthenticated, remote attacker to cause an affected phone to reload unexpectedly, resulting in a temporary denial of service (DoS) condition. The vulnerability is due to incomplete error handling when XML data within a SIP packet is parsed. An attacker could exploit this vulnerability by sending a SIP packet that contains a malicious XML payload to an affected phone. A successful exploit could allow the attacker to cause the affected phone to reload unexpectedly, resulting in a temporary DoS condition.
Credit: ykramarz@cisco.com ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IP Conference Phone 7832 Firmware | =9.3\(4\)sr3 | |
Cisco IP Conference Phone 7832 Firmware | =10.3\(1\)sr4b | |
Cisco IP Conference Phone 7832 Firmware | =11.0\(4\)sr2 | |
Cisco IP Conference Phone 7832 Firmware | =12.1\(1\)sr1 | |
Cisco IP Conference Phone 7832 Firmware | ||
Cisco IP Conference Phone 8832 | =9.3\(4\)sr3 | |
Cisco IP Conference Phone 8832 | =10.3\(1\)sr4b | |
Cisco IP Conference Phone 8832 | =11.0\(4\)sr2 | |
Cisco IP Conference Phone 8832 | =12.1\(1\)sr1 | |
Cisco IP Conference Phone 8832 Firmware | ||
Cisco IP Phone 7811 firmware | =9.3\(4\)sr3 | |
Cisco IP Phone 7811 firmware | =10.3\(1\)sr4b | |
Cisco IP Phone 7811 firmware | =11.0\(4\)sr2 | |
Cisco IP Phone 7811 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 7811 firmware | ||
Cisco IP Phone 7821 firmware | =9.3\(4\)sr3 | |
Cisco IP Phone 7821 firmware | =10.3\(1\)sr4b | |
Cisco IP Phone 7821 firmware | =11.0\(4\)sr2 | |
Cisco IP Phone 7821 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 7821 firmware | ||
Cisco IP Phone 7841 firmware | =9.3\(4\)sr3 | |
Cisco IP Phone 7841 firmware | =10.3\(1\)sr4b | |
Cisco IP Phone 7841 firmware | =11.0\(4\)sr2 | |
Cisco IP Phone 7841 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 7841 firmware | ||
Cisco IP Phone 7861 firmware | =9.3\(4\)sr3 | |
Cisco IP Phone 7861 firmware | =10.3\(1\)sr4b | |
Cisco IP Phone 7861 firmware | =11.0\(4\)sr2 | |
Cisco IP Phone 7861 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 7861 firmware | ||
Cisco IP Phone 8811 firmware | =9.3\(4\)sr3 | |
Cisco IP Phone 8811 firmware | =10.3\(1\)sr4b | |
Cisco IP Phone 8811 firmware | =11.0\(4\)sr2 | |
Cisco IP Phone 8811 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 8811 firmware | ||
Cisco IP Phone 8841 firmware | =9.3\(4\)sr3 | |
Cisco IP Phone 8841 firmware | =10.3\(1\)sr4b | |
Cisco IP Phone 8841 firmware | =11.0\(4\)sr2 | |
Cisco IP Phone 8841 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 8841 firmware | ||
Cisco IP Phone 8845 firmware | =9.3\(4\)sr3 | |
Cisco IP Phone 8845 firmware | =10.3\(1\)sr4b | |
Cisco IP Phone 8845 firmware | =11.0\(4\)sr2 | |
Cisco IP Phone 8845 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 8845 firmware | ||
Cisco IP Phone 8851 firmware | =9.3\(4\)sr3 | |
Cisco IP Phone 8851 firmware | =10.3\(1\)sr4b | |
Cisco IP Phone 8851 firmware | =11.0\(4\)sr2 | |
Cisco IP Phone 8851 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 8851 firmware | ||
cisco ip phone 8861 firmware | =9.3\(4\)sr3 | |
cisco ip phone 8861 firmware | =10.3\(1\)sr4b | |
cisco ip phone 8861 firmware | =11.0\(4\)sr2 | |
cisco ip phone 8861 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 8861 Firmware 3PCC | ||
cisco ip phone 8865 firmware | =9.3\(4\)sr3 | |
cisco ip phone 8865 firmware | =10.3\(1\)sr4b | |
cisco ip phone 8865 firmware | =11.0\(4\)sr2 | |
cisco ip phone 8865 firmware | =12.1\(1\)sr1 | |
cisco ip phone 8865 | ||
Cisco Unified IP Conference Phone 8831 | =9.3\(4\)sr3 | |
Cisco Unified IP Conference Phone 8831 | =10.3\(1\)sr4b | |
Cisco Unified IP Conference Phone 8831 | =11.0\(4\)sr2 | |
Cisco Unified IP Conference Phone 8831 | =12.1\(1\)sr1 | |
Cisco Unified IP Conference Phone 8831 | ||
Cisco Unified IP 8831 Conference Phone for Third-Party Call Control Firmware | =9.3\(4\)sr3 | |
Cisco Unified IP 8831 Conference Phone for Third-Party Call Control Firmware | =10.3\(1\)sr4b | |
Cisco Unified IP 8831 Conference Phone for Third-Party Call Control Firmware | =11.0\(4\)sr2 | |
Cisco Unified IP 8831 Conference Phone for Third-Party Call Control Firmware | =12.1\(1\)sr1 | |
Cisco Unified IP 8831 Conference Phone for Third-Party Call Control Firmware | ||
Cisco Wireless IP Phone 8821-EX firmware | =9.3\(4\)sr3 | |
Cisco Wireless IP Phone 8821-EX firmware | =10.3\(1\)sr4b | |
Cisco Wireless IP Phone 8821-EX firmware | =11.0\(4\)sr2 | |
Cisco Wireless IP Phone 8821-EX firmware | =12.1\(1\)sr1 | |
Cisco Wireless IP Phone 8821-EX | ||
Cisco Wireless IP Phone 8821-EX firmware | =9.3\(4\)sr3 | |
Cisco Wireless IP Phone 8821-EX firmware | =10.3\(1\)sr4b | |
Cisco Wireless IP Phone 8821-EX firmware | =11.0\(4\)sr2 | |
Cisco Wireless IP Phone 8821-EX firmware | =12.1\(1\)sr1 | |
Cisco Wireless IP Phone 8821-EX firmware | ||
All of | ||
Any of | ||
Cisco IP Conference Phone 7832 Firmware | =9.3\(4\)sr3 | |
Cisco IP Conference Phone 7832 Firmware | =10.3\(1\)sr4b | |
Cisco IP Conference Phone 7832 Firmware | =11.0\(4\)sr2 | |
Cisco IP Conference Phone 7832 Firmware | =12.1\(1\)sr1 | |
Cisco IP Conference Phone 7832 Firmware | ||
All of | ||
Any of | ||
Cisco IP Conference Phone 8832 | =9.3\(4\)sr3 | |
Cisco IP Conference Phone 8832 | =10.3\(1\)sr4b | |
Cisco IP Conference Phone 8832 | =11.0\(4\)sr2 | |
Cisco IP Conference Phone 8832 | =12.1\(1\)sr1 | |
Cisco IP Conference Phone 8832 Firmware | ||
All of | ||
Any of | ||
Cisco IP Phone 7811 firmware | =9.3\(4\)sr3 | |
Cisco IP Phone 7811 firmware | =10.3\(1\)sr4b | |
Cisco IP Phone 7811 firmware | =11.0\(4\)sr2 | |
Cisco IP Phone 7811 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 7811 firmware | ||
All of | ||
Any of | ||
Cisco IP Phone 7821 firmware | =9.3\(4\)sr3 | |
Cisco IP Phone 7821 firmware | =10.3\(1\)sr4b | |
Cisco IP Phone 7821 firmware | =11.0\(4\)sr2 | |
Cisco IP Phone 7821 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 7821 firmware | ||
All of | ||
Any of | ||
Cisco IP Phone 7841 firmware | =9.3\(4\)sr3 | |
Cisco IP Phone 7841 firmware | =10.3\(1\)sr4b | |
Cisco IP Phone 7841 firmware | =11.0\(4\)sr2 | |
Cisco IP Phone 7841 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 7841 firmware | ||
All of | ||
Any of | ||
Cisco IP Phone 7861 firmware | =9.3\(4\)sr3 | |
Cisco IP Phone 7861 firmware | =10.3\(1\)sr4b | |
Cisco IP Phone 7861 firmware | =11.0\(4\)sr2 | |
Cisco IP Phone 7861 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 7861 firmware | ||
All of | ||
Any of | ||
Cisco IP Phone 8811 firmware | =9.3\(4\)sr3 | |
Cisco IP Phone 8811 firmware | =10.3\(1\)sr4b | |
Cisco IP Phone 8811 firmware | =11.0\(4\)sr2 | |
Cisco IP Phone 8811 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 8811 firmware | ||
All of | ||
Any of | ||
Cisco IP Phone 8841 firmware | =9.3\(4\)sr3 | |
Cisco IP Phone 8841 firmware | =10.3\(1\)sr4b | |
Cisco IP Phone 8841 firmware | =11.0\(4\)sr2 | |
Cisco IP Phone 8841 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 8841 firmware | ||
All of | ||
Any of | ||
Cisco IP Phone 8845 firmware | =9.3\(4\)sr3 | |
Cisco IP Phone 8845 firmware | =10.3\(1\)sr4b | |
Cisco IP Phone 8845 firmware | =11.0\(4\)sr2 | |
Cisco IP Phone 8845 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 8845 firmware | ||
All of | ||
Any of | ||
Cisco IP Phone 8851 firmware | =9.3\(4\)sr3 | |
Cisco IP Phone 8851 firmware | =10.3\(1\)sr4b | |
Cisco IP Phone 8851 firmware | =11.0\(4\)sr2 | |
Cisco IP Phone 8851 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 8851 firmware | ||
All of | ||
Any of | ||
cisco ip phone 8861 firmware | =9.3\(4\)sr3 | |
cisco ip phone 8861 firmware | =10.3\(1\)sr4b | |
cisco ip phone 8861 firmware | =11.0\(4\)sr2 | |
cisco ip phone 8861 firmware | =12.1\(1\)sr1 | |
Cisco IP Phone 8861 Firmware 3PCC | ||
All of | ||
Any of | ||
cisco ip phone 8865 firmware | =9.3\(4\)sr3 | |
cisco ip phone 8865 firmware | =10.3\(1\)sr4b | |
cisco ip phone 8865 firmware | =11.0\(4\)sr2 | |
cisco ip phone 8865 firmware | =12.1\(1\)sr1 | |
cisco ip phone 8865 | ||
All of | ||
Any of | ||
Cisco Unified IP Conference Phone 8831 | =9.3\(4\)sr3 | |
Cisco Unified IP Conference Phone 8831 | =10.3\(1\)sr4b | |
Cisco Unified IP Conference Phone 8831 | =11.0\(4\)sr2 | |
Cisco Unified IP Conference Phone 8831 | =12.1\(1\)sr1 | |
Cisco Unified IP Conference Phone 8831 | ||
All of | ||
Any of | ||
Cisco Unified IP 8831 Conference Phone for Third-Party Call Control Firmware | =9.3\(4\)sr3 | |
Cisco Unified IP 8831 Conference Phone for Third-Party Call Control Firmware | =10.3\(1\)sr4b | |
Cisco Unified IP 8831 Conference Phone for Third-Party Call Control Firmware | =11.0\(4\)sr2 | |
Cisco Unified IP 8831 Conference Phone for Third-Party Call Control Firmware | =12.1\(1\)sr1 | |
Cisco Unified IP 8831 Conference Phone for Third-Party Call Control Firmware | ||
All of | ||
Any of | ||
Cisco Wireless IP Phone 8821-EX firmware | =9.3\(4\)sr3 | |
Cisco Wireless IP Phone 8821-EX firmware | =10.3\(1\)sr4b | |
Cisco Wireless IP Phone 8821-EX firmware | =11.0\(4\)sr2 | |
Cisco Wireless IP Phone 8821-EX firmware | =12.1\(1\)sr1 | |
Cisco Wireless IP Phone 8821-EX | ||
All of | ||
Any of | ||
Cisco Wireless IP Phone 8821-EX firmware | =9.3\(4\)sr3 | |
Cisco Wireless IP Phone 8821-EX firmware | =10.3\(1\)sr4b | |
Cisco Wireless IP Phone 8821-EX firmware | =11.0\(4\)sr2 | |
Cisco Wireless IP Phone 8821-EX firmware | =12.1\(1\)sr1 | |
Cisco Wireless IP Phone 8821-EX firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2019-1635 is classified as high, reflecting its potential to cause a denial of service by reloading affected Cisco IP phones.
To fix CVE-2019-1635, update the firmware of affected Cisco IP phones to the latest version provided by Cisco.
CVE-2019-1635 affects various models in the Cisco IP Phone 7800 and 8800 series, including specific firmware versions.
Yes, CVE-2019-1635 can be exploited by an unauthenticated, remote attacker.
The impact of CVE-2019-1635 is a temporary denial of service, causing affected phones to unexpectedly reload.