cbcvebase.
CVE-2013-3461
published 2013-08-25

CVE-2013-3461: Cisco Unified Communications Manager (Unified CM) 8.5(x) and 8.6(x) before 8.6(2a)su3 and 9.x before 9.1(1) does not properly restrict the rate of SIP packets…

high7.1CVSS 3.1
AVNACMAuNCNINAC
Cisco Unified Communications Manager (Unified CM) 8.5(x) and 8.6(x) before 8.6(2a)su3 and 9.x before 9.1(1) does not properly restrict the rate of SIP packets, which allows remote attackers to cause a denial of service (memory and CPU consumption, and service disruption) via a flood of UDP packets to port 5060, aka Bug ID CSCub35869.

Affected

17 ranges
VendorProductVersion rangeFixed in
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager
ciscounified_communications_manager
qemuqemu>= 0 < 2.0.0+dfsg-2ubuntu1.32.0.0+dfsg-2ubuntu1.3

CVSS provenance

nvd7.1HIGHAV:N/AC:M/Au:N/C:N/I:N/A:C
osv7.5HIGH