Vulnslist

find the latest Cisco vulnerabilities

Cisco Unified IP Phone Overflow and Denial of Service Vulnerabilities

cisco-sa-20080213-phone · Critical · Published · Updated

Cisco Unified IP Phone models contain multiple overflow and denial of service (DoS) vulnerabilities. There are workarounds for several of these vulnerabilities. Cisco has made free software available to address this issue for affected customers. This advisory is posted at https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20080213-phone.

Workarounds

No workaround information imported yet.

CVEsCVE-2004-2486, CVE-2008-0526, CVE-2008-0527, CVE-2008-0528, CVE-2008-0529, CVE-2008-0530, CVE-2008-0531
Cisco Bug IDsNA
CVSS ScoreBase 10.0
Base 10.0 AV:N/AC:L/Au:N/C:C/I:C/A:C/E:F/RL:OF/RC:C/CDP:N/TD:N/CR:ND/IR:ND/AR:ND
Base 7.8 AV:N/AC:L/Au:N/C:N/I:N/A:C/E:F/RL:OF/RC:C/CDP:N/TD:N/CR:ND/IR:ND/AR:ND
Base 8.5 AV:N/AC:M/Au:S/C:C/I:C/A:C/E:F/RL:OF/RC:C/CDP:N/TD:N/CR:ND/IR:ND/AR:ND
Base 7.6 AV:N/AC:H/Au:N/C:C/I:C/A:C/E:F/RL:OF/RC:C/CDP:N/TD:N/CR:ND/IR:ND/AR:ND
Product Names From Source
Cisco IP phone, Cisco Unified IP Phone 7906G, Cisco Unified IP Phone 7911G, Cisco Unified IP Phone 7941G, Cisco Unified IP Phone 7961G, Cisco Unified IP Phone 7970G, Cisco Unified IP Phone 7971G, Cisco Unified IP Phone 7960G, Cisco Unified IP Phone 7940G

Related Products

Product CVE Evidence