cbcvebase.
CVE-2008-0027
published 2008-01-17

CVE-2008-0027: Heap-based buffer overflow in the Certificate Trust List (CTL) Provider service (CTLProvider.exe) in Cisco Unified Communications Manager (CUCM) 4.2 before…

PriorityP359critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
57.11%
99.0th percentile
Heap-based buffer overflow in the Certificate Trust List (CTL) Provider service (CTLProvider.exe) in Cisco Unified Communications Manager (CUCM) 4.2 before 4.2(3)SR3 and 4.3 before 4.3(1)SR1, and CallManager 4.0 and 4.1 before 4.1(3)SR5c, allows remote attackers to cause a denial of service or execute arbitrary code via a long request.

Affected

10 ranges
VendorProductVersion rangeFixed in
ciscounified_callmanager
ciscounified_callmanager
ciscounified_callmanager
ciscounified_callmanager
ciscounified_callmanager
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager_ctl_provider

Detection & IOCsextracted from sources · hover to see the quote

processCTLProvider.exe
  • Monitor for unusually long/oversized requests sent to the CTL Provider service (CTLProvider.exe) on CUCM systems, which is the trigger for the heap overflow.
  • The vulnerability is exploitable by a remote, unauthenticated user — alert on unexpected or anonymous connections to the CTL Provider service.
  • Track Cisco bug ID CSCsj22605 for vendor patch status and internal change tracking related to this vulnerability.
  • ·Affected versions are CUCM 4.2 before 4.2(3)SR3, CUCM 4.3 before 4.3(1)SR1, and CallManager 4.0 and 4.1 before 4.1(3)SR5c. Ensure patched versions are deployed.
  • ·A workaround exists for this vulnerability — consult the Cisco Security Advisory for details before patching.

CVSS provenance

nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
vendor_cisco10.0CRITICAL
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.