CVE-2013-1129
published 2013-02-19CVE-2013-1129: Memory leak in Cisco Unity Connection 9.x allows remote attackers to cause a denial of service (memory consumption and process crash) by sending many TCP…
PriorityP421medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
1.23%
65.9th percentile
Memory leak in Cisco Unity Connection 9.x allows remote attackers to cause a denial of service (memory consumption and process crash) by sending many TCP requests, aka Bug ID CSCud59736.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | unity_connection | — | — |
| cisco | unity_connection | — | — |
| cisco | unity_connection | — | — |
| cisco | unity_connection | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
vendor_cisco5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Unity Connection Memory Leak Denial of Service Vulnerability
vendor_cisco·2013-02-18·CVSS 5.0
CVE-2013-1129 [MEDIUM] CWE-399 Cisco Unity Connection Memory Leak Denial of Service Vulnerability
Cisco Unity Connection Memory Leak Denial of Service Vulnerability
Cisco Unity Connection contains a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition.
The vulnerability is due to the improper handling of user-supplied requests by the affected software. An unauthenticated, remote attacker could exploit this vulnerability by sending crafted requests to an affected system. The processing of such requests could cause a DoS condition, denying access to legitimate users.
Cisco has confirmed the vulnerability; however, software updates are not available.
To exploit this vulnerability, an attacker would need access to trusted, internal networks to submit malicious requests to the targeted system. This access requirement decreases
GHSA
GHSA-xvjj-mhxv-ccr9: Memory leak in Cisco Unity Connection 9
ghsa_unreviewed·2022-05-17
CVE-2013-1129 [MEDIUM] GHSA-xvjj-mhxv-ccr9: Memory leak in Cisco Unity Connection 9
Memory leak in Cisco Unity Connection 9.x allows remote attackers to cause a denial of service (memory consumption and process crash) by sending many TCP requests, aka Bug ID CSCud59736.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2013-02-19
Published