CVE-2008-0027
published 2008-01-17CVE-2008-0027: Heap-based buffer overflow in the Certificate Trust List (CTL) Provider service (CTLProvider.exe) in Cisco Unified Communications Manager (CUCM) 4.2 before…
PriorityP359critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
57.11%
99.0th percentile
Heap-based buffer overflow in the Certificate Trust List (CTL) Provider service (CTLProvider.exe) in Cisco Unified Communications Manager (CUCM) 4.2 before 4.2(3)SR3 and 4.3 before 4.3(1)SR1, and CallManager 4.0 and 4.1 before 4.1(3)SR5c, allows remote attackers to cause a denial of service or execute arbitrary code via a long request.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | unified_callmanager | — | — |
| cisco | unified_callmanager | — | — |
| cisco | unified_callmanager | — | — |
| cisco | unified_callmanager | — | — |
| cisco | unified_callmanager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager | — | — |
| cisco | unified_communications_manager_ctl_provider | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Monitor for unusually long/oversized requests sent to the CTL Provider service (CTLProvider.exe) on CUCM systems, which is the trigger for the heap overflow. ↗
- →The vulnerability is exploitable by a remote, unauthenticated user — alert on unexpected or anonymous connections to the CTL Provider service. ↗
- →Track Cisco bug ID CSCsj22605 for vendor patch status and internal change tracking related to this vulnerability. ↗
- ·Affected versions are CUCM 4.2 before 4.2(3)SR3, CUCM 4.3 before 4.3(1)SR1, and CallManager 4.0 and 4.1 before 4.1(3)SR5c. Ensure patched versions are deployed. ↗
- ·A workaround exists for this vulnerability — consult the Cisco Security Advisory for details before patching. ↗
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
vendor_cisco10.0CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Unified Communications Manager CTL Provider Heap Overflow
vendor_cisco·2008-01-16·CVSS 10.0
CVE-2008-0027 [CRITICAL] CWE-119 Cisco Unified Communications Manager CTL Provider Heap Overflow
Cisco Unified Communications Manager CTL Provider Heap Overflow
Cisco Unified Communications Manager (CUCM), formerly CallManager,
contains a heap overflow vulnerability in the Certificate Trust List (CTL)
Provider service that could allow a remote, unauthenticated user to cause a
denial of service (DoS) condition or execute arbitrary code. There is a
workaround for this vulnerability.
Cisco has made free software available to address these vulnerabilities
for affected customers.
Common Vulnerabilities and Exposures (CVE) identifier CVE-2008-0027 has
been assigned to this vulnerability.
This advisory is posted at
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20080116-cucmctl.
Cisco
Cisco Unified Communications Manager CTL Provider Heap Overflow
vendor_cisco
CVE-2008-0027 Cisco Unified Communications Manager CTL Provider Heap Overflow
CVE-2008-0027: Cisco Unified Communications Manager CTL Provider Heap Overflow
Cisco Unified Communications Manager (CUCM), formerly CallManager, contains a heap overflow vulnerability in the Certificate Trust List (CTL) Provider service that could allow a remote, unauthenticated user to cause a denial of service (DoS) condition or execute arbitrary code. There is a workaround for this vulnerability. Cisco has made free software available to address these vulnerabilities for affected customers. Common Vulnerabilities and Exposures (CVE) identifier CVE-2008-0027 has been assigned to this vulnerability. This advisory is posted at https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20080116-cucmctl .
CWE: CWE-119, CWE-119
Bug IDs: CSCsj22605
GHSA
GHSA-fr76-mw78-4mfw: Heap-based buffer overflow in the Certificate Trust List (CTL) Provider service (CTLProvider
ghsa_unreviewed·2022-05-01
CVE-2008-0027 [HIGH] CWE-119 GHSA-fr76-mw78-4mfw: Heap-based buffer overflow in the Certificate Trust List (CTL) Provider service (CTLProvider
Heap-based buffer overflow in the Certificate Trust List (CTL) Provider service (CTLProvider.exe) in Cisco Unified Communications Manager (CUCM) 4.2 before 4.2(3)SR3 and 4.3 before 4.3(1)SR1, and CallManager 4.0 and 4.1 before 4.1(3)SR5c, allows remote attackers to cause a denial of service or execute arbitrary code via a long request.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://dvlabs.tippingpoint.com/advisory/TPTI-08-02http://secunia.com/advisories/28530http://securityreason.com/securityalert/3551http://www.cisco.com/en/US/products/products_security_advisory09186a0080932c61.shtmlhttp://www.securityfocus.com/archive/1/486432/100/0/threadedhttp://www.securityfocus.com/bid/27313http://www.securitytracker.com/id?1019223http://www.vupen.com/english/advisories/2008/0171https://exchange.xforce.ibmcloud.com/vulnerabilities/39704http://dvlabs.tippingpoint.com/advisory/TPTI-08-02http://secunia.com/advisories/28530http://securityreason.com/securityalert/3551http://www.cisco.com/en/US/products/products_security_advisory09186a0080932c61.shtmlhttp://www.securityfocus.com/archive/1/486432/100/0/threadedhttp://www.securityfocus.com/bid/27313http://www.securitytracker.com/id?1019223http://www.vupen.com/english/advisories/2008/0171https://exchange.xforce.ibmcloud.com/vulnerabilities/39704
2008-01-17
Published