CVE-2008-0027
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Heap-based buffer overflow in the Certificate Trust List (CTL) Provider service (CTLProvider.exe) in Cisco Unified Communications Manager (CUCM) 4.2 before 4.2(3)SR3 and 4.3 before 4.3(1)SR1, and CallManager 4.0 and 4.1 before 4.1(3)SR5c, allows remote attackers to cause a denial of service or execute arbitrary code via a long request.
Desbordamiento de búfer basado en pila en el servicio proveedor de Listas de Certificados Confiables (CTL, Certificate Trust List) (CTLProvider.exe) en Cisco Unified Communications Manager (CUCM) 4.2 anterior a 4.2(3)SR3 y 4.3 anterior a 4.3(1)SR1, y CallManager 4.0 y 4.1 anterior a 4.1(3)SR5c, permite a atacantes remotos provocar una denegación de servicio o ejecutar código de su elección mediante una petición larga.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2007-12-17 CVE Reserved
- 2008-01-17 CVE Published
- 2024-08-07 CVE Updated
- 2024-10-13 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (9)
URL | Tag | Source |
---|---|---|
http://dvlabs.tippingpoint.com/advisory/TPTI-08-02 | X_refsource_misc | |
http://secunia.com/advisories/28530 | Third Party Advisory | |
http://securityreason.com/securityalert/3551 | Third Party Advisory | |
http://www.securityfocus.com/archive/1/486432/100/0/threaded | Mailing List | |
http://www.securityfocus.com/bid/27313 | Vdb Entry | |
http://www.securitytracker.com/id?1019223 | Vdb Entry | |
http://www.vupen.com/english/advisories/2008/0171 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/39704 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.cisco.com/en/US/products/products_security_advisory09186a0080932c61.shtml | 2018-10-15 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Unified Callmanager Search vendor "Cisco" for product "Unified Callmanager" | 4.0 Search vendor "Cisco" for product "Unified Callmanager" and version "4.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Callmanager Search vendor "Cisco" for product "Unified Callmanager" | 4.1 Search vendor "Cisco" for product "Unified Callmanager" and version "4.1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Callmanager Search vendor "Cisco" for product "Unified Callmanager" | 4.1\(3\)sr4 Search vendor "Cisco" for product "Unified Callmanager" and version "4.1\(3\)sr4" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Callmanager Search vendor "Cisco" for product "Unified Callmanager" | 4.1\(3\)sr5 Search vendor "Cisco" for product "Unified Callmanager" and version "4.1\(3\)sr5" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Callmanager Search vendor "Cisco" for product "Unified Callmanager" | 4.1\(3\)sr5b Search vendor "Cisco" for product "Unified Callmanager" and version "4.1\(3\)sr5b" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Communications Manager Search vendor "Cisco" for product "Unified Communications Manager" | 4.2 Search vendor "Cisco" for product "Unified Communications Manager" and version "4.2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Communications Manager Search vendor "Cisco" for product "Unified Communications Manager" | 4.2.3sr2 Search vendor "Cisco" for product "Unified Communications Manager" and version "4.2.3sr2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Communications Manager Search vendor "Cisco" for product "Unified Communications Manager" | 4.2.3sr2b Search vendor "Cisco" for product "Unified Communications Manager" and version "4.2.3sr2b" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Communications Manager Search vendor "Cisco" for product "Unified Communications Manager" | 4.3 Search vendor "Cisco" for product "Unified Communications Manager" and version "4.3" | - |
Affected
|