Cisco: CUCM DoS Vulnerabilities
Cisco Unified Communications Manager (formerly Cisco CallManager) contains multiple denial of service (DoS) vulnerabilities that if exploited could cause an interruption of voice services. The Session Initiation Protocol (SIP), Skinny Client Control Protocol (SCCP) and Computer Telephony Integration (CTI) Manager services are affected by these vulnerabilities.
To address these vulnerabilities, Cisco has released free software updates for select Cisco Unified Communications Manager versions. There is a workaround for of one the vulnerabilities.
The following products are affected by vulnerabilities that are described in this advisory:
* Cisco Unified Communications Manager 4.x
* Cisco Unified Communications Manager 5.x
* Cisco Unified Communications Manager 6.x
* Cisco Unified Communications Manager 7.x
Administrators can mitigate the SCCP- and SIP-related vulnerabilities by implementing filtering on screening devices to permit access to TCP ports 2000 and 2443, and TCP and UDP ports 5060 and 5061 only from networks that require SCCP and SIP access to Cisco Unified Communications Manager appliances.
It is possible to mitigate the CTI Manager vulnerability by disabling the CTI Manager service t is not necessary; however, this workaround will interrupt applications that reply on the CTI Manager service. Administrators can also mitigate the vulnerability by implementing filtering on screening devices to permit access to TCP port 2748 only from networks that require access to the CTI Manager service.
This advisory is posted at http://www.cisco.com/warp/public/707/cisco-sa-20100303-cucm.shtml
Which WAN Optimization vendor will consolidate and expand its market position on 2011
447 votes - Thank you all!I add the results in a blog posts so we can see over years on which [more]
CCIE home rack - Ubuntu persistent net rules
In one of my last posts, I was writing about my CCIE home rack which has one server that runs Ubuntu + [more]
Black Friday 2011 - 50% Off on INE bundles
If anybody is interested in buying INE products, do it now. I've got the following marketing e-mail. The [more]
Free streaming course CCNA 640-802 from INE
I'm sure that a lot of people out there got this info already, but for those who are not part of INE [more]
Home lab for CCIE exam training
Before I started with my preparation I was in front of a dilemma. I knew that I will need a rack to [more]
Professionals Blogs
- globalconfig.net
Close preview
Loading... - CCIECisco
Close preview
Loading... - cisco-tips.com
Close preview
Loading... - Cisco Network Engineer Blog
Close preview
Loading... - gns3-labs.com
Close preview
Loading... - mellowd.co.uk
Close preview
Loading... - blindhog.net
Close preview
Loading... - danielhertzberg.wordpress.com
Close preview
Loading... - routing-bits.com
Close preview
Loading... - packetlife.net
Close preview
Loading... - noshut.blogspot.com
Close preview
Loading... - etherealmind.com
Close preview
Loading... - brainbump.net
Close preview
Loading... - amyengineer.wordpress.com
Close preview
Loading... - blog.ioshints.info
Close preview
Loading... - packet-forwarding.net
Close preview
Loading... - bradhedlund.com
Close preview
Loading...
- globalconfig.net




