CVE-2008-4444

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
16/01/2009
Last modified:
09/04/2025

Description

Cisco Unified IP Phone (aka SIP phone) 7960G and 7940G with firmware P0S3-08-9-00 and possibly other versions before 8.10 allows remote attackers to cause a denial of service (device reboot) or possibly execute arbitrary code via a Realtime Transport Protocol (RTP) packet with malformed headers.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:cisco:unified_ip_phone_7940g:*:*:*:*:*:*:*:*
cpe:2.3:h:cisco:unified_ip_phone_7960g:*:*:*:*:*:*:*:*