Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-4444

Overview

Vulnerability Score 7.1 7.1
CVE Id CVE-2008-4444
Last Modified 29 Jan 2009 01:56:23
Published 16 Jan 2009 04:30:03
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2008-4444

Summary

Cisco Unified IP Phone (aka SIP phone) 7960G and 7940G with firmware P0S3-08-9-00 and possibly other versions before 8.10 allows remote attackers to cause a denial of service (device reboot) or possibly execute arbitrary code via a Realtime Transport Protocol (RTP) packet with malformed headers.

Vulnerable Systems


References

XF - cisco-unifiedipphone-rtp-dos(47948)

BID - 33264

BUGTRAQ - 20090114 Cisco Unified IP Phone 7960G and 7940G (SIP) RTP Header Vulnerability

CONFIRM - http://www.cisco.com/en/US/docs/voice_ip_comm/cuipph/7960g_7940g/firmware/sip/8_10/english/release/notes/796040sip_810.html

SREASON - 4917


Last Updated: 27 May 2016 10:48:30