Description
Cisco Security Agent (CSA) for Linux 4.5 before 4.5.1.657 and 5.0 before 5.0.0.193, as used by Unified CallManager (CUCM) and Unified Presence Server (CUPS), allows remote attackers to cause a denial of service (resource consumption) via a port scan with certain options.
Affected products
- Cisco / security_agent4.5 – 4.5
- Cisco / security_agent4.5.1 – 4.5.1
- Cisco / security_agent4.5.1.639 – 4.5.1.639
- Cisco / security_agent5.0 – 5.0
- Cisco / unified_callmanager5.0(1) – 5.0(1)
- Cisco / unified_callmanager5.0(2) – 5.0(2)
- Cisco / unified_callmanager5.0(3) – 5.0(3)
- Cisco / unified_callmanager5.0(3a) – 5.0(3a)
- Cisco / unified_callmanager5.0(4) – 5.0(4)
- Cisco / unified_presence_server1.0 – 1.0
- Cisco / unified_presence_server1.0(2) – 1.0(2)
References
- MISChttp://securitytracker.com/id?1017118
- MISChttp://www.securityfocus.com/bid/20737
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/29829
- MISChttp://www.osvdb.org/30055
- VENDOR_ADVISORYhttp://www.cisco.com/en/US/products/products_security_advisory09186a00807693c7.shtml
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2006/4198
- VENDOR_ADVISORYhttp://secunia.com/advisories/22574