Cisco warns of Unified Communications Manager flaw
- 18 January, 2008 07:24
- Comments
Cisco Wednesday released its first new security alert of the year: a warning that its Cisco Unified Communications Manager - formerly CallManager - contains a heap overflow vulnerability in the Certificate Trust List that could allow a hacker to cause a denial-of-service attack or execute arbitrary code.
Cisco has made available a free software fix for affected customers, and a workaround is available in its security advisory.
The products that are vulnerable are:
-- Cisco Unified CallManager 4.0
-- Cisco Unified CallManager 4.1 Versions prior to 4.1(3)SR5c
-- Cisco Unified Communications Manager 4.2 Versions prior to 4.2(3) SR3
-- Cisco Unified Communications Manager 4.3 Versions prior to 4.3(1) SR1
Cisco says it is not aware of any public announcements or malicious use of the vulnerability, which was reported to Cisco from TippingPoint.
Nominations for the 2012 ARN IT Industry Awards open on Tuesday, June 12.
- Bookmark this page
- Share this article
- Got more on this story? Email ARN
- Follow ARN on twitter
- Spectra Logic and Australian National University Success Story - March 2012
- In Search of the Long-Term Archiving Solution —Tape Delivers Significant TCO Advantage over Disk
- Red Light In the Control Centre Saves Hours of Chaos
- Aberdeen Group: Building Business Resilience Through Active Archive
- In Search of the Long-Term Archiving Solution —Tape Continues to Be a Major Player
-
First look: Samsung Galaxy S III
-
Spotify tunes into Australia
-
Telstra and Navman Wireless extend GPS tracking partnership
-
World’s eyes on Aussie NBN: Conroy
-
iPhone 5 rumour rollup for the week ending May 27













Comments
Post new comment