Cisco Unified Communications Manager Session Initiation Protocol Denial of Service Vulnerabilities
26 Nov. 2010
Summary
Cisco Unified Communications Manager contains two denial of service (DoS) vulnerabilities that affect the processing of Session Initiation Protocol (SIP) messages.
Cisco Unified Communications Manager contains two DoS vulnerabilities that involve the processing of SIP messages. Each vulnerability is triggered by a malformed SIP message that could cause a critical process to fail, which could result in the disruption of voice services. All SIP ports (TCP ports 5060 and 5061 and UDP ports 5060 and 5061) are affected. Exploitation of these vulnerabilities could cause an interruption of voice services.
Workaround:
Cisco Unified Communication Manager versions 6.1, 7.1 and 8.0 introduced the ability to disable SIP processing. SIP processing is enabled by default. Use the following instructions to disable SIP processing:
Step 1: Log into the Cisco Unified CM Administration web interface.
Step 2: Navigate to System > Service Parameters and select the appropriate Cisco Unified Communications Manager server and the "Cisco CallManager" service.
Step 3: Change the "SIP Interoperability Enabled" parameter to False, and click Save.