CVE Vulnerabilities

CVE-2011-2560

Published: Aug 29, 2011 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The Packet Capture Service in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 4.x does not properly handle idle TCP connections, which allows remote attackers to cause a denial of service (memory consumption and restart) by making many connections, aka Bug ID CSCtf97162.

Affected Software

NameVendorStart VersionEnd Version
Unified_communications_managerCisco4.1(3) (including)4.1(3) (including)
Unified_communications_managerCisco4.1(3)sr1 (including)4.1(3)sr1 (including)
Unified_communications_managerCisco4.1(3)sr2 (including)4.1(3)sr2 (including)
Unified_communications_managerCisco4.1(3)sr3 (including)4.1(3)sr3 (including)
Unified_communications_managerCisco4.1(3)sr4 (including)4.1(3)sr4 (including)
Unified_communications_managerCisco4.2 (including)4.2 (including)
Unified_communications_managerCisco4.2.1 (including)4.2.1 (including)
Unified_communications_managerCisco4.2.2 (including)4.2.2 (including)
Unified_communications_managerCisco4.2.3 (including)4.2.3 (including)
Unified_communications_managerCisco4.2.3sr1 (including)4.2.3sr1 (including)
Unified_communications_managerCisco4.2.3sr2 (including)4.2.3sr2 (including)
Unified_communications_managerCisco4.2.3sr2b (including)4.2.3sr2b (including)
Unified_communications_managerCisco4.3 (including)4.3 (including)
Unified_communications_managerCisco4.3(1) (including)4.3(1) (including)

References