CVE Vulnerabilities

CVE-2010-2838

Published: Aug 26, 2010 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The SendCombinedStatusInfo implementation in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 7.0SU before 7.0(2a)SU3, 7.1 before 7.1(5), and 8.0 before 8.0(3) allows remote attackers to cause a denial of service (process failure) via a malformed SIP REGISTER message, aka Bug ID CSCtf66305.

Affected Software

NameVendorStart VersionEnd Version
Unified_communications_managerCisco*7.0(2a)su2 (including)
Unified_communications_managerCisco7.0(1)su1 (including)7.0(1)su1 (including)
Unified_communications_managerCisco7.0(1)su1a (including)7.0(1)su1a (including)
Unified_communications_managerCisco7.0(2) (including)7.0(2) (including)
Unified_communications_managerCisco7.0(2a) (including)7.0(2a) (including)
Unified_communications_managerCisco7.0(2a)su1 (including)7.0(2a)su1 (including)

References