The Thomson ST 2030 SIP phone with software 1.52.1 allows remote attackers to cause a denial of service (device hang) via an INVITE message with a Via header that contains a / (slash) instead of the required space following the SIP version number.
Name | Vendor | Start Version | End Version |
---|---|---|---|
St_2030_sip_phone | Thomson | 1-1.52.1_firmware (including) | 1-1.52.1_firmware (including) |