CVE-2009-0057
Severity CVSS v4.0:
Pending analysis
Type:
CWE-20
Input Validation
Publication date:
22/01/2009
Last modified:
09/04/2025
Description
The Certificate Authority Proxy Function (CAPF) service in Cisco Unified Communications Manager 5.x before 5.1(3e) and 6.x before 6.1(3) allows remote attackers to cause a denial of service (voice service outage) by sending malformed input over a TCP session in which the "client terminates prematurely."
Impact
Base Score 2.0
4.30
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:cisco:unified_communications_manager:5.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:5.0_1:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:5.0_2:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:5.0_3:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:5.0_3a:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:5.0_4:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:5.0_4a:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:5.0_4a_su1:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:5.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:5.1:\(1\):*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:5.1:\(2\):*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:5.1:\(2a\):*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:5.1:\(2b\):*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:5.1:\(3a\):*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:5.1:5.1\(1\):*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://secunia.com/advisories/33588
- http://www.cisco.com/en/US/products/products_security_advisory09186a0080a61928.shtml
- http://www.securityfocus.com/bid/33379
- http://www.securitytracker.com/id?1021620=
- http://www.vupen.com/english/advisories/2009/0213
- https://exchange.xforce.ibmcloud.com/vulnerabilities/48139
- http://secunia.com/advisories/33588
- http://www.cisco.com/en/US/products/products_security_advisory09186a0080a61928.shtml
- http://www.securityfocus.com/bid/33379
- http://www.securitytracker.com/id?1021620=
- http://www.vupen.com/english/advisories/2009/0213
- https://exchange.xforce.ibmcloud.com/vulnerabilities/48139