CVE-2015-0614

Cisco Unity Connection 8.5-8.6 9.x-10.0 - Denial of Service via Crafted SIP INVITE Messages

Title source: llm
STIX 2.1

Description

The Connection Conversation Manager (aka CuCsMgr) process in Cisco Unity Connection 8.5 before 8.5(1)SU7, 8.6 before 8.6(2a)SU4, 9.x before 9.1(2)SU2, and 10.0 before 10.0(1)SU1, when SIP trunk integration is enabled, allows remote attackers to cause a denial of service (core dump and restart) via crafted SIP INVITE messages, aka Bug ID CSCul26267.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1032010

Scores

EPSS 0.0167
EPSS Percentile 74.3%

Details

CWE
CWE-19
Status published
Products (21)
cisco/unity_connection 8.5\(1\)
cisco/unity_connection 8.5\(1\)su1
cisco/unity_connection 8.5\(1\)su2
cisco/unity_connection 8.5\(1\)su3
cisco/unity_connection 8.5\(1\)su4
cisco/unity_connection 8.5\(1\)su5
cisco/unity_connection 8.5\(1\)su6
cisco/unity_connection 8.5_base
cisco/unity_connection 8.6\(1\)
cisco/unity_connection 8.6\(1a\)
... and 11 more
Published Apr 03, 2015
Tracked Since Feb 18, 2026