Description
Buffer overflow in Cisco Unified CallManager (CUCM) 5.0(1) through 5.0(3a) allows remote attackers to execute arbitrary code via a long hostname in a SIP request, aka bug CSCsd96542.
Affected products
- Cisco / unified_callmanager5.0(1) – 5.0(1)
- Cisco / unified_callmanager5.0(2) – 5.0(2)
- Cisco / unified_callmanager5.0(3) – 5.0(3)
- Cisco / unified_callmanager5.0(3a) – 5.0(3a)
References
- MISChttp://securitytracker.com/id?1016475
- MISChttp://www.securityfocus.com/bid/18952
- MISChttp://www.osvdb.org/27162
- VENDOR_ADVISORYhttp://www.cisco.com/warp/public/707/cisco-sa-20060712-cucm.shtml
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2006/2774
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/27691
- VENDOR_ADVISORYhttp://secunia.com/advisories/21030