Cisco Unity Connection Denial of Service Vulnerability
9 Mar. 2012
Summary
Cisco Unity Connection contains a vulnerability that may allow an unauthenticated, remote attacker to cause system services to terminate unexpectedly, which may result in a denial of service.
Vulnerable Systems:
* Cisco Unity Connection version 7.0 and Prior
Cisco Unity Connection before 7.1.5b(Su5), 8.0 and 8.5 before 8.5.1(Su3), and 8.6 before 8.6.2 allows remote attackers to cause a denial of service (services crash) via a series of crafted TCP segments, aka Bug ID CSCtq67899.
Vendor Status:
Cisco has released free software updates that address this vulnerability.