Vulnslist

find the latest Cisco vulnerabilities

Cisco Unified IP Phones 9900 Series Denial of Service Vulnerability

Cisco-SA-20150629-CVE-2015-4226 · Medium · Published · Updated

A vulnerability in the packet storing capabilities of Cisco 9900 Series IP Phones could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition.   The vulnerability is due to how the phone decoder handles certain real-time transport protocol (RTP) packets. An attacker could exploit this vulnerability by calling a registered phone, waiting for a user to answer, then send malformed RTP packets to the user’s phone. A successful exploit could cause the phone to become unresponsive, resulting in a DoS condition. Cisco has confirmed the vulnerability and released software updates. To exploit this vulnerability, an attacker must first call a targeted phone and then rely on a user to answer the phone prior to sending malformed RTP packets. The attacker can not exploit this vulnerability without this requirement. Cisco indicates through the CVSS score that functional exploit code exists; however, the code is not known to be publicly available.

Workarounds

Administrators are advised to apply the appropriate updates.

Administrators are advised to monitor affected systems.

CVEsCVE-2015-4226
Cisco Bug IDsCSCur39976
CVSS ScoreBase 4.3
Base 4.3 AV:N/AC:M/Au:N/C:N/I:N/A:P/E:F/RL:OF/RC:C
Product Names From Source
Cisco Unified IP Phones 9900 Series Firmware

CSAF Product Statuses

Product Status Source CVE Rows
Cisco Unified IP Phones 9900 Series Firmware known_affected cisco_csaf CVE-2015-4226 1

Related Products

Product CVE Evidence
Cisco Unified IP Phones 9900 Series Firmware CVE-2015-4226 Cisco OpenVuln · family-level