Secunia Logo  


Secunia PSI WorldMap
 
Vulnerability Report: Avaya S8XXX Media Servers
This vulnerability report for Avaya S8XXX Media Servers contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.

If you have information about a new or an existing vulnerability in Avaya S8XXX Media Servers then you are more than welcome to contact us.


Table of Contents

1. Product Summary Only

2. Secunia Advisory Statistics (All time)
2.1. Statistics for 2009
2.2. Statistics for 2008
2.3. Statistics for 2007
2.4. Statistics for 2006
2.5. Statistics for 2005
2.6. Statistics for 2004
2.7. Statistics for 2003

3. List of Secunia Advisories (All time)
3.1. List for 2009
3.2. List for 2008
3.3. List for 2007
3.4. List for 2006
3.5. List for 2005
3.6. List for 2004
3.7. List for 2003

4. Send Feedback
 
Vendor, Links, and Unpatched Vulnerabilities

Vendor Avaya

Product Link View Here (Link to external site)

Affected By 78 Secunia advisories
368 Vulnerabilities

Monitor Product Receive alerts for this product

Unpatched 67% (52 of 78 Secunia advisories)

Most Critical Unpatched
The most severe unpatched Secunia advisory affecting Avaya S8XXX Media Servers, with all vendor patches applied, is rated Highly critical .




40 Secunia Advisories in 2006
Secunia has issued a total of 40 Secunia advisories in 2006 for Avaya S8XXX Media Servers. Currently, 78% (31 out of 40) are marked as unpatched with the most severe being rated Highly critical

More information about the specific Secunia advisories affecting Avaya S8XXX Media Servers can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.



Avaya S8100 Microsoft Windows File Manifest Privilege Escalation
Vendor Patch. Secunia Advisory 1 of 40 in 2006. 8,753 views.
Release Date:
2006-12-14
Secunia Advisory ID:
SA23348
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a vulnerability in S8100, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Avaya Products Wireshark Multiple Vulnerabilities
Unpatched. Secunia Advisory 2 of 40 in 2006. 7,714 views.
Release Date:
2006-11-28
Secunia Advisory ID:
SA23096
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in Wireshark, included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Avaya Products Linux Kernel Multiple Vulnerabilities
Unpatched. Secunia Advisory 3 of 40 in 2006. 7,102 views.
Release Date:
2006-11-23
Secunia Advisory ID:
SA23064
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Exposure of sensitive information
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious, local users to bypass certain security restrictions, to disclose potentially sensitive information, or to cause a DoS (Denial of Service), and by malicious people to cause a DoS (Denial of Service). [Read More]


Avaya Products Linux Kernel Multiple Vulnerabilities
Unpatched. Secunia Advisory 4 of 40 in 2006. 8,211 views.
Release Date:
2006-11-17
Secunia Advisory ID:
SA22945
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of sensitive information
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious, local users to bypass certain security restrictions, expose potentially sensitive information, or to cause a DoS (Denial of Service), and by malicious people to cause a DoS. [Read More]


Avaya Products PHP Buffer Overflows
Unpatched. Secunia Advisory 5 of 40 in 2006. 6,330 views.
Release Date:
2006-11-10
Secunia Advisory ID:
SA22779
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Avaya Products PHP Multiple Vulnerabilites
Partial Fix. Secunia Advisory 6 of 40 in 2006. 6,687 views.
Release Date:
2006-10-23
Secunia Advisory ID:
SA22538
Solution Status:
Partial Fix
Criticality:
Impact:
Unknown
Security Bypass
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in PHP included in various Avaya products, where some have unknown impacts, and others can be exploited by malicious, local users to bypass certain security restrictions and by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Avaya Products PHP "_ecalloc" Integer Overflow Vulnerability
Unpatched. Secunia Advisory 7 of 40 in 2006. 5,952 views.
Release Date:
2006-10-23
Secunia Advisory ID:
SA22533
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in PHP included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products Linux Kernel Multiple Vulnerabilities
Unpatched. Secunia Advisory 8 of 40 in 2006. 6,421 views.
Release Date:
2006-10-16
Secunia Advisory ID:
SA22417
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Exposure of sensitive information
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in the Linux Kernel included in various Avaya products, which can be exploited by malicious, local users to bypass certain security restrictions, gain knowledge of potentially sensitive information, or cause a DoS (Denial of Service), and by malicious people to bypass certain security restrictions or cause a DoS. [Read More]


Avaya Products PHP Multiple Vulnerabilities
Partial Fix. Secunia Advisory 9 of 40 in 2006. 7,119 views.
Release Date:
2006-10-16
Secunia Advisory ID:
SA22440
Solution Status:
Partial Fix
Criticality:
Impact:
Security Bypass
Cross Site Scripting
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in PHP included in various Avaya products, which can be exploited by malicious, local users to bypass certain security restrictions, and by malicious people to conduct cross-site scripting and HTTP response splitting attacks, cause a DoS (Denial of Service), and potentially compromise a vulnerable system. [Read More]


Avaya Products gzip Multiple Vulnerabilities
Unpatched. Secunia Advisory 10 of 40 in 2006. 6,413 views.
Release Date:
2006-10-16
Secunia Advisory ID:
SA22435
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in gzip included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products OpenSSL Multiple Vulnerabilities
Unpatched. Secunia Advisory 11 of 40 in 2006. 7,833 views.
Release Date:
2006-10-13
Secunia Advisory ID:
SA22385
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in OpenSSL included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a vulnerable system. [Read More]


Avaya Products Wireshark Multiple Vulnerabilities
Unpatched. Secunia Advisory 12 of 40 in 2006. 7,532 views.
Release Date:
2006-10-13
Secunia Advisory ID:
SA22378
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in Wireshark included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products ncompress Buffer Overflow Vulnerability
Partial Fix. Secunia Advisory 13 of 40 in 2006. 5,306 views.
Release Date:
2006-10-13
Secunia Advisory ID:
SA22377
Solution Status:
Partial Fix
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in ncompress included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system. [Read More]


Avaya Products Kerberos V5 setuid Security Issue
Unpatched. Secunia Advisory 14 of 40 in 2006. 6,066 views.
Release Date:
2006-10-06
Secunia Advisory ID:
SA22291
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a security issue in various products, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]


Avaya Products Linux Kernel Multiple Vulnerabilities
Unpatched. Secunia Advisory 15 of 40 in 2006. 7,060 views.
Release Date:
2006-09-28
Secunia Advisory ID:
SA22174
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious, local users to cause a DoS or gain escalated privileges and by malicious people to cause a DoS. [Read More]


Avaya Products wireshark Vulnerabilities
Unpatched. Secunia Advisory 16 of 40 in 2006. 6,776 views.
Release Date:
2006-09-25
Secunia Advisory ID:
SA22089
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products Linux Kernel Multiple Vulnerabilities
Unpatched. Secunia Advisory 17 of 40 in 2006. 6,943 views.
Release Date:
2006-09-18
Secunia Advisory ID:
SA21983
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Exposure of system information
Exposure of sensitive information
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in the Linux Kernel included in various Avaya products, which can be exploited by malicious, local users to gain knowledge of system or potentially sensitive information, bypass certain security restrictions, cause a DoS (Denial of Service), or by malicious people to cause a DoS. [Read More]


Avaya Products OpenSSL Vulnerability
Unpatched. Secunia Advisory 18 of 40 in 2006. 7,151 views.
Release Date:
2006-09-12
Secunia Advisory ID:
SA21870
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in OpenSSL included in various Avaya products, which potentially can be exploited by malicious people to bypass certain security restrictions. [Read More]


Avaya Products Linux Kernel Multiple Vulnerabilities
Unpatched. Secunia Advisory 19 of 40 in 2006. 9,007 views.
Release Date:
2006-09-04
Secunia Advisory ID:
SA21745
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in the Linux Kernel included in various Avaya products, which can be exploited by malicious, local users and by malicious people to bypass certain security restrictions and cause a DoS (Denial of Service). [Read More]


Avaya Products OpenSSH Shell Command Injection and Security Bypass
Unpatched. Secunia Advisory 20 of 40 in 2006. 9,177 views.
Release Date:
2006-09-01
Secunia Advisory ID:
SA21724
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Privilege escalation
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability and a weakness in OpenSSH included in various Avaya products, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges and by malicious users to bypass certain security restrictions. [Read More]


Avaya Products elfutils Vulnerability
Unpatched. Secunia Advisory 21 of 40 in 2006. 7,584 views.
Release Date:
2006-09-01
Secunia Advisory ID:
SA21717
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a vulnerability in elfutils included in various Avaya products, which potentially can be exploited by malicious, local users to gain escalated privileges. [Read More]


Avaya Products FreeType Vulnerabilities
Partial Fix. Secunia Advisory 22 of 40 in 2006. 8,239 views.
Release Date:
2006-08-31
Secunia Advisory ID:
SA21701
Solution Status:
Partial Fix
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in FreeType included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise applications using the library. [Read More]


Avaya Products GnuPG Denial of Service Vulnerability
Unpatched. Secunia Advisory 23 of 40 in 2006. 6,509 views.
Release Date:
2006-08-21
Secunia Advisory ID:
SA21585
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various products, which potentially can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Avaya Products PHP Multiple Vulnerabilities
Unpatched. Secunia Advisory 24 of 40 in 2006. 7,536 views.
Release Date:
2006-08-21
Secunia Advisory ID:
SA21564
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Cross Site Scripting
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in PHP included in various Avaya products, which can be exploited by malicious users to cause a DoS (Denial of Service) or compromise a vulnerable system, and by malicious people to conduct cross-site scripting attacks and potentially compromise a vulnerable system. [Read More]


Avaya Products OpenSSH scp Shell Command Injection
Unpatched. Secunia Advisory 25 of 40 in 2006. 7,040 views.
Release Date:
2006-08-16
Secunia Advisory ID:
SA21492
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a weakness in various Avaya products, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]


Avaya Products Multiple Vulnerabilities
Unpatched. Secunia Advisory 26 of 40 in 2006. 6,851 views.
Release Date:
2006-08-16
Secunia Advisory ID:
SA21520
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Exposure of sensitive information
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in the dump, openldap, and nss_ldap packages included in various Avaya products, which can be exploited by malicious, local users to cause a DoS (Denial of Service), and by malicious people to gain knowledge of sensitive information or bypass certain security restrictions. [Read More]


Avaya Products PHP Multiple Vulnerabilities
Partial Fix. Secunia Advisory 27 of 40 in 2006. 7,990 views.
Release Date:
2006-07-06
Secunia Advisory ID:
SA20951
Solution Status:
Partial Fix
Criticality:
Impact:
Security Bypass
Cross Site Scripting
Manipulation of data
Exposure of sensitive information
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in PHP included in various Avaya products, which can be exploited by malicious users to cause a DoS (Denial of Service) or compromise a vulnerable system, and by malicious people to conduct cross-site scripting attacks, to gain knowledge of potentially sensitive information, and to use PHP as an open mail relay. [Read More]


Avaya Products Ethereal Vulnerabilities
Unpatched. Secunia Advisory 28 of 40 in 2006. 7,780 views.
Release Date:
2006-07-03
Secunia Advisory ID:
SA20944
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in ethereal included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Avaya Products vixie-cron Exposure of Arbitrary Cron Files
Unpatched. Secunia Advisory 29 of 40 in 2006. 6,769 views.
Release Date:
2006-06-14
Secunia Advisory ID:
SA20666
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of system information
Where:
Local system
Short Description:
Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious, local users to read arbitrary cron files. [Read More]


Avaya Products PostgreSQL Multiple Vulnerabilities
Unpatched. Secunia Advisory 30 of 40 in 2006. 7,049 views.
Release Date:
2006-06-14
Secunia Advisory ID:
SA20653
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Manipulation of data
Where:
From remote
Short Description:
Avaya has acknowledged two vulnerabilities and a weakness in various Avaya products, which potentially can be exploited by malicious, local users to bypass certain security restrictions, and by malicious people to conduct SQL injection attacks. [Read More]


Avaya Products "tar" Directory Traversal Vulnerability
Unpatched. Secunia Advisory 31 of 40 in 2006. 6,019 views.
Release Date:
2006-06-01
Secunia Advisory ID:
SA20397
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious people to cause files to be extracted to arbitrary locations on a user's system. [Read More]


Avaya S87X0/S8500/S8300 Tar PAX Extended Headers Buffer Overflow
Unpatched. Secunia Advisory 32 of 40 in 2006. 7,712 views.
Release Date:
2006-05-10
Secunia Advisory ID:
SA20042
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in Avaya S87X0/S8500/S8300 Media Servers, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) and to compromise a user's system. [Read More]


Avaya Products Sendmail Signal Handling Memory Corruption
Unpatched. Secunia Advisory 33 of 40 in 2006. 8,728 views.
Release Date:
2006-03-27
Secunia Advisory ID:
SA19404
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Avaya Products WMF Image Parsing Vulnerability
Vendor Patch. Secunia Advisory 34 of 40 in 2006. 8,120 views.
Release Date:
2006-02-16
Secunia Advisory ID:
SA18912
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious people to compromise a user's system. [Read More]


Avaya Products Ethereal Vulnerabilities
Unpatched. Secunia Advisory 35 of 40 in 2006. 8,152 views.
Release Date:
2006-02-16
Secunia Advisory ID:
SA18911
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in ethereal included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system. [Read More]


Avaya S87XX/S8500/S8300 Lynx "HTrjis()" NNTP Buffer Overflow
Unpatched. Secunia Advisory 36 of 40 in 2006. 8,476 views.
Release Date:
2006-01-25
Secunia Advisory ID:
SA18584
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in Avaya S87XX/S8500/S8300, which can be exploited by malicious people to compromise a user's system. [Read More]


Avaya gdb Integer Overflow and Insecure Initialisation File Handling
Unpatched. Secunia Advisory 37 of 40 in 2006. 6,654 views.
Release Date:
2006-01-18
Secunia Advisory ID:
SA18506
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged two vulnerabilities in various products, which potentially can be exploited by malicious, local users to gain escalated privileges. [Read More]


Avaya Products Microsoft Windows Embedded Web Fonts Code Execution
Vendor Patch. Secunia Advisory 38 of 40 in 2006. 8,300 views.
Release Date:
2006-01-11
Secunia Advisory ID:
SA18391
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Avaya Products Microsoft Windows WMF "SETABORTPROC" Vulnerability
Vendor Patch. Secunia Advisory 39 of 40 in 2006. 10,643 views.
Release Date:
2006-01-09
Secunia Advisory ID:
SA18364
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Avaya Products OpenSSL SSL/TLS Handshake Denial of Service
Unpatched. Secunia Advisory 40 of 40 in 2006. 7,335 views.
Release Date:
2006-01-02
Secunia Advisory ID:
SA18247
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]