Executive Summary

Informations
Name CVE-2007-4292 First vendor Publication 2007-08-09
Vendor Cve Last vendor Modification 2017-09-29

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:M/Au:N/C:C/I:C/A:C)
Cvss Base Score 9.3 Attack Range Network
Cvss Impact Score 10 Attack Complexity Medium
Cvss Expoit Score 8.6 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

Multiple memory leaks in Cisco IOS 12.0 through 12.4 allow remote attackers to cause a denial of service (device crash) via a malformed SIP packet, aka (1) CSCsf11855, (2) CSCeb21064, (3) CSCse40276, (4) CSCse68355, (5) CSCsf30058, (6) CSCsb24007, and (7) CSCsc60249.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4292

OVAL Definitions

Definition Id: oval:org.mitre.oval:def:5781
 
Oval ID: oval:org.mitre.oval:def:5781
Title: Cisco IOS Session Initiation Protocol (SIP) Packet DoS Vulnerability
Description: Multiple memory leaks in Cisco IOS 12.0 through 12.4 allow remote attackers to cause a denial of service (device crash) via a malformed SIP packet, aka (1) CSCsf11855, (2) CSCeb21064, (3) CSCse40276, (4) CSCse68355, (5) CSCsf30058, (6) CSCsb24007, and (7) CSCsc60249.
Family: ios Class: vulnerability
Reference(s): CVE-2007-4292
Version: 3
Platform(s): Cisco IOS
Product(s):
Definition Synopsis:

CPE : Common Platform Enumeration

TypeDescriptionCount
Os 5

Open Source Vulnerability Database (OSVDB)

Id Description
36676 Cisco IOS Malformed SIP Packet Remote DoS (CSCsf11855)

36675 Cisco IOS Malformed SIP Packet Remote DoS (CSCeb21064)

36674 Cisco IOS Malformed SIP Packet Remote DoS (CSCse40276)

36673 Cisco IOS Malformed SIP Packet Remote DoS (CSCse68355)

36672 Cisco IOS Malformed SIP Packet Remote Memory Leak DoS (CSCsf30058)

36671 Cisco IOS Malformed SIP Packet Remote Memory Corruption (CSCsb24007)

36670 Cisco IOS Malformed SIP Packet Remote DoS (CSCsc60249)

Nessus® Vulnerability Scanner

Date Description
2010-09-01 Name : The remote device is missing a vendor-supplied security patch.
File : cisco-sa-20070808-IOS-voice.nasl - Type : ACT_GATHER_INFO

Sources (Detail)

Source Url
BID http://www.securityfocus.com/bid/25239
CISCO http://www.cisco.com/en/US/products/products_security_advisory09186a008089965...
OSVDB http://osvdb.org/36670
http://osvdb.org/36671
http://osvdb.org/36672
http://osvdb.org/36673
http://osvdb.org/36674
http://osvdb.org/36675
http://osvdb.org/36676
OVAL https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.ova...
SECTRACK http://securitytracker.com/id?1018533
SECUNIA http://secunia.com/advisories/26363
VUPEN http://www.vupen.com/english/advisories/2007/2816
XF https://exchange.xforce.ibmcloud.com/vulnerabilities/35890

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
Date Informations
2021-05-04 12:06:15
  • Multiple Updates
2021-04-22 01:06:47
  • Multiple Updates
2020-05-23 00:20:16
  • Multiple Updates
2017-09-29 09:23:10
  • Multiple Updates
2017-07-29 12:02:27
  • Multiple Updates
2016-06-28 16:49:31
  • Multiple Updates
2016-04-26 16:28:47
  • Multiple Updates
2014-02-17 10:41:18
  • Multiple Updates
2013-05-11 10:33:48
  • Multiple Updates