CVE Vulnerabilities

CVE-2008-1742

Published: May 16, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Memory leak in the Certificate Trust List (CTL) Provider service in Cisco Unified Communications Manager (CUCM) 5.x before 5.1(3) allows remote attackers to cause a denial of service (memory consumption and service interruption) via a series of malformed TCP packets, as demonstrated by TCPFUZZ, aka Bug ID CSCsj80609.

Affected Software

NameVendorStart VersionEnd Version
Unified_communications_managerCisco4.1 (including)4.1 (including)
Unified_communications_managerCisco4.2 (including)4.2 (including)
Unified_communications_managerCisco4.3 (including)4.3 (including)
Unified_communications_managerCisco5.1-(1) (including)5.1-(1) (including)
Unified_communications_managerCisco5.1-(2) (including)5.1-(2) (including)
Unified_communications_managerCisco5.1-(2a) (including)5.1-(2a) (including)
Unified_communications_managerCisco5.1-(2b) (including)5.1-(2b) (including)
Unified_communications_managerCisco5.1-(3a) (including)5.1-(3a) (including)
Unified_communications_managerCisco6.0 (including)6.0 (including)
Unified_communications_managerCisco6.0-(1) (including)6.0-(1) (including)
Unified_communications_managerCisco6.0-(1a) (including)6.0-(1a) (including)
Unified_communications_managerCisco6.1 (including)6.1 (including)
Unified_communications_managerCisco6.1-(1a) (including)6.1-(1a) (including)

References