CVE-2008-1742

Severity CVSS v4.0:
Pending analysis
Type:
CWE-399 Resource Management Errors
Publication date:
16/05/2008
Last modified:
09/04/2025

Description

Memory leak in the Certificate Trust List (CTL) Provider service in Cisco Unified Communications Manager (CUCM) 5.x before 5.1(3) allows remote attackers to cause a denial of service (memory consumption and service interruption) via a series of malformed TCP packets, as demonstrated by TCPFUZZ, aka Bug ID CSCsj80609.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cisco:unified_communications_manager:4.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:4.2:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:4.3:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:5.1:\(1\):*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:5.1:\(2\):*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:5.1:\(2a\):*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:5.1:\(2b\):*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:5.1:\(3a\):*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:6.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:6.0:\(1\):*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:6.0:\(1a\):*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:6.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:6.1:\(1a\):*:*:*:*:*:*