The Packet Capture Service in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 4.x does not properly handle idle TCP connections, which allows remote attackers to cause a denial of service (memory consumption and restart) by making many connections, aka Bug ID CSCtf97162.
| Software | From | Fixed in |
|---|---|---|
| cisco / unified_communications_manager | 4.2.3sr2 | 4.2.3sr2.x |
| cisco / unified_communications_manager | 4.1(3)sr1 | 4.1(3)sr1.x |
| cisco / unified_communications_manager | 4.2.3sr1 | 4.2.3sr1.x |
| cisco / unified_communications_manager | 4.1(3)sr2 | 4.1(3)sr2.x |
| cisco / unified_communications_manager | 4.1(3) | 4.1(3).x |
| cisco / unified_communications_manager | 4.2 | 4.2.x |
| cisco / unified_communications_manager | 4.3 | 4.3.x |
| cisco / unified_communications_manager | 4.2.3 | 4.2.3.x |
| cisco / unified_communications_manager | 4.1(3)sr4 | 4.1(3)sr4.x |
| cisco / unified_communications_manager | 4.2.1 | 4.2.1.x |
| cisco / unified_communications_manager | 4.2.2 | 4.2.2.x |
| cisco / unified_communications_manager | 4.3(1) | 4.3(1).x |
| cisco / unified_communications_manager | 4.1(3)sr3 | 4.1(3)sr3.x |
| cisco / unified_communications_manager | 4.2.3sr2b | 4.2.3sr2b.x |