The Nortel UNIStim IP Softphone 2050, IP Phone 1140E, and other Nortel IP Phone, Mobile Voice Client, and WLAN Handsets products allow remote attackers to cause a denial of service (device hang) via a flood of Mute and UnMute messages that have a spoofed source IP address for the Signaling Server.
2007-10-23T17:46:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 7.1 (HIGH)
AV:N/AC:M/Au:N/C:N/I:N/A:C
8.6
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Hardware | nortel | ip_audio_conference_phone_2033 | * | No |
Hardware | nortel | ip_phone_1110 | * | No |
Hardware | nortel | ip_phone_1120e | * | No |
Hardware | nortel | ip_phone_1140e | * | No |
Hardware | nortel | ip_phone_1150e | * | No |
Hardware | nortel | ip_phone_2001 | * | No |
Hardware | nortel | ip_phone_2002 | * | No |
Hardware | nortel | ip_phone_2004 | * | No |
Hardware | nortel | wlan_handset_2210 | * | No |
Hardware | nortel | wlan_handset_2211 | * | No |
Hardware | nortel | wlan_handset_2212 | * | No |
Hardware | nortel | wlan_handset_6120 | * | No |
Hardware | nortel | wlan_handset_6140 | * | No |
Application | nortel | ip_softphone_2050 | * | Yes |
Application | nortel | mobile_voice_client_2050 | * | Yes |