CVE-2013-3460Improper Restriction of Operations within the Bounds of a Memory Buffer in Cisco Unified Communications Manager

Severity
7.8HIGHNVD
EPSS
0.5%
top 32.12%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 25
Latest updateMay 17

Description

Memory leak in Cisco Unified Communications Manager (Unified CM) 8.5(x) before 8.5(1)su6, 8.6(x) before 8.6(2a)su3, and 9.x before 9.1(1) allows remote attackers to cause a denial of service (service disruption) via a high rate of UDP packets, aka Bug ID CSCub85597.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-hqpx-mggj-gjxq: Memory leak in Cisco Unified Communications Manager (Unified CM) 82022-05-17
CVEList
CVE-2013-3460: Memory leak in Cisco Unified Communications Manager (Unified CM) 82013-08-25

📋Vendor Advisories

1
Cisco
Multiple Vulnerabilities in Cisco Unified Communications Manager2013-08-21
CVE-2013-3460 — Cisco vulnerability | cvebase