Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-3210

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2008-3210
Last Modified 29 Jan 2009 01:52:37
Published 18 Jul 2008 11:13:00
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2008-3210

Summary

rutil/dns/DnsStub.cxx in ReSIProcate 1.3.2, as used by repro, allows remote attackers to cause a denial of service (daemon crash) via a SIP (1) INVITE or (2) OPTIONS message with a long domain name in a request URI, which triggers an assert error.

Vulnerable Systems

Application

  • Resiprocate 1.3.2


References

CONFIRM - http://www.resiprocate.org/ReSIProcate_1.3.3_Release

XF - resiprocate-dnsstub-dos(43770)

BID - 30194

MILW0RM - 6046

SREASON - 4013

SECUNIA - 31058

MISC - http://labs.mudynamics.com/advisories/MU-200807-01.txt


Last Updated: 27 May 2016 10:48:06