Description: A vulnerability has been reported in Cisco Unified CallManager (CUCM), which can be exploited by malicious people to cause a DoS (Denial of Service).
The vulnerability is caused due to an unspecified error within the handling of certain packets. This can be exploited to crash the CallManager Service by sending a series of specially crafted packets to the SCCP service (port 2000/TCP) or SCCPS service (port 2443/TCP).
The vulnerability is reported in CUCM versions prior to 3.3(5)SR2a, 4.1(3)SR4, 4.2(3)SR1, and 5.0(4a)SU1.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.