|
Avaya CMS / IR Sun Solaris ACK Storm Denial of Service
|
|
|
|
|
Secunia Advisory:
|
SA22425
|
|
|
Release Date:
|
2006-10-16
|
|
|
Critical:
|

Less critical
|
|
Impact:
|
DoS
|
|
Where:
|
From remote
|
|
Solution Status:
|
Partial Fix
|
|
| OS: | Avaya Call Management System (CMS)
|
| | Software: | Avaya Interactive Response 1.x
|
| | CVE reference: | CVE-2006-3920 (Secunia mirror)
|
|
|
|
|
|
Description: Avaya has acknowledged a vulnerability in Avaya CMS/IR, which can be exploited by malicious people to cause a DoS (Denial of Service).
For more information:
SA21226
The following products are affected:
* CMS V9, V11, R12, R13/R13.1
* IR (all versions)
Solution: Avaya CMS:
The required patches are reportedly in the latest R13.1 loads (r13.1cb.e and r13.1cb.d). The patches will be tested on V9, V11, R12, R13, and R13.1 systems and the vendor will update the advisory when they have been tested.
Avaya IR:
Apply patch cluster 09/07.
Original Advisory: http://support.avaya.com/elmodocs2/security/ASA-2006-204.htm
Other References: SA21226:
http://secunia.com/advisories/21226/
|
|
|
|
|
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.
Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
|
|
|
|
65 Related Secunia Security Advisories, displaying 10
|
|
|
1. Avaya CMS Solaris namefs Kernel Module Privilege Escalation
|
|
2. Avaya CMS Solaris "snoop" Multiple Vulnerabilities
|
|
3. Avaya CMS Solaris "picld" Denial of Service
|
|
4. Avaya CMS Sun Java JDK / JRE Same Origin Policy Bypass
|
|
5. Avaya CMS / IR Solaris X Server Extensions Multiple Vulnerabilities
|
|
6. Avaya CMS Solaris "inet_network()" Off-By-One Vulnerability
|
|
7. Avaya CMS Solaris crontab Privilege Escalation Vulnerability
|
|
8. Avaya CMS Solaris Print Service Unspecified Vulnerabilities
|
|
9. Avaya CMS Solaris SSH X11 Forwarding Vulnerability
|
|
10. Avaya CMS Solaris TCP Implementation SYN Flood Denial of Service
|
Show all related advisories
|
|
|
Send Feedback to Secunia
|
|
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.
|
|
|
|