25/01/2009 Denial of service in Cisco Unified Communications Manager 5.x and 6.x
Cisco has released an update to Cisco Unified Communications Manager 5.x and 6.x that fixes a security flaw that could allow an attacker remote cause a denial of service.
The Cisco Unified Communications solution is a suite of communications products and applications that collects and integrates voice, video and data.
Service Certificate Authority Proxy Function (CAPF) fails to properly handle malformed inputs, which could cause an interruption in voice services. The CAPF service is disabled by default.
Cisco through the usual channels, has made available to customers
solutions to solve the problem.
is advised to consult the table of vulnerable versions and countermeasures
:
http://www.cisco.com/warp/public/707/cisco-sa-20090121-cucmcapf.shtml Cisco has released an update to Cisco Unified Communications Manager 5.x and 6.x that fixes a security flaw that could allow an attacker remote cause a denial of service.
The Cisco Unified Communications solution is a suite of communications products and applications that collects and integrates voice, video and data.
Service Certificate Authority Proxy Function (CAPF) fails to properly handle malformed inputs, which could cause an interruption in voice services. The CAPF service is disabled by default.
Cisco through the usual channels, has made available to customers
solutions to solve the problem.
is advised to consult the table of vulnerable versions and countermeasures
:
More Information:
Cisco Security Advisory: Cisco Unified Communications Manager Denial of Service Vulnerability CAPF
http://www.cisco.com/warp/public/707/cisco-sa-20090121-cucmcapf.shtml
Source: www.
0 comments:
Post a Comment