CVE-2009-2054
Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 4.x, 5.x before 5.1(3g), 6.x before 6.1(4), 7.0 before 7.0(2a)su1, and 7.1 before 7.1(2a)su1 allows remote attackers to cause a denial of service (file-descriptor exhaustion and SIP outage) via a flood of TCP packets, aka Bug ID CSCsx23689.
Published
2009-08-27T17:00:01.047
Last Modified
2025-04-09T00:30:58.490
Status
Deferred
Source
[email protected]
Severity
CVSSv2: 7.8 (HIGH)
CVSSv2 Vector
AV:N/AC:L/Au:N/C:N/I:N/A:C
- Access Vector: NETWORK
- Access Complexity: LOW
- Authentication: NONE
- Confidentiality Impact: NONE
- Integrity Impact: NONE
- Availability Impact: COMPLETE
Exploitability Score
10.0
Impact Score
6.9
Weaknesses
Affected Vendors & Products
References
-
http://osvdb.org/57456
Broken Link
([email protected])
-
http://secunia.com/advisories/36498
Broken Link
([email protected])
-
http://secunia.com/advisories/36499
Broken Link
([email protected])
-
http://www.cisco.com/en/US/products/products_security_advisory09186a0080af2d11.shtml
Broken Link, Patch, Vendor Advisory
([email protected])
-
http://www.securityfocus.com/bid/36152
Broken Link, Third Party Advisory, VDB Entry
([email protected])
-
http://www.securitytracker.com/id?1022775
Broken Link, Third Party Advisory, VDB Entry
([email protected])
-
http://osvdb.org/57456
Broken Link
(af854a3a-2127-422b-91ae-364da2661108)
-
http://secunia.com/advisories/36498
Broken Link
(af854a3a-2127-422b-91ae-364da2661108)
-
http://secunia.com/advisories/36499
Broken Link
(af854a3a-2127-422b-91ae-364da2661108)
-
http://www.cisco.com/en/US/products/products_security_advisory09186a0080af2d11.shtml
Broken Link, Patch, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
http://www.securityfocus.com/bid/36152
Broken Link, Third Party Advisory, VDB Entry
(af854a3a-2127-422b-91ae-364da2661108)
-
http://www.securitytracker.com/id?1022775
Broken Link, Third Party Advisory, VDB Entry
(af854a3a-2127-422b-91ae-364da2661108)