发布日期:2014-01-14
更新日期:2014-01-17受影响系统:
Cisco Unity Connection 8.x
描述:
--------------------------------------------------------------------------------
CVE(CAN) ID: CVE-2013-0664Cisco Unity Connection 可以透明地将留言和语音识别组件与您的数据网络集成到一起,不间断地提供对呼叫和留言的全面访问。Cisco Unity Connection 9.1.2 ES25, 9.1(01)ES25, 8.6(02)ES101, 8.5(01)ES132之前版本在处理IMAP UID SEARCH命令时出现错误,这可被恶意用户利用耗尽CPU资源,导致拒绝服务。<*来源:vendor
链接:http://secunia.com/advisories/56370/
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-0664
*>建议:
--------------------------------------------------------------------------------
厂商补丁:Cisco
-----
Cisco已经为此发布了一个安全公告(CVE-2014-0664)以及相应补丁:
CVE-2014-0664:Cisco Unity Connection Internet Message Access Protocol Denial of Service Vulnerability
链接:http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-0664Microsoft Dynamics AX拒绝服务漏洞(CVE-2014-0261)(MS14-004)Adobe Flash Player/AIR信息泄露漏洞(CVE-2014-0492)(apsb14-02)相关资讯 Cisco Unity Connection
- Cisco Unity Connection跨站脚本漏 (01月28日)
- Cisco Unity Connection Web (09/22/2015 13:33:23)
- Cisco Unity Connection SIP中继集 (04/07/2015 08:08:15)
| - Cisco Unity Connection跨站脚本漏 (12/04/2015 08:13:52)
- Cisco Unity Connection (05/07/2015 14:13:34)
- Cisco Unity Connection SIP中继集 (04/03/2015 11:33:14)
|
本文评论 查看全部评论 (0)
评论声明- 尊重网上道德,遵守中华人民共和国的各项有关法律法规
- 承担一切因您的行为而直接或间接导致的民
|