CVE-2015-0615

Cisco Unity Connection 8.5-8.6 9.x 10.0 - Denial of Service via SIP Session Termination

Title source: llm
STIX 2.1

Description

The call-handling implementation in Cisco Unity Connection 8.5 before 8.5(1)SU7, 8.6 before 8.6(2a)SU4, 9.x before 9.1(2)SU2, and 10.0 before 10.0(1)SU1, when SIP trunk integration is enabled, allows remote attackers to cause a denial of service (port consumption) by improperly terminating SIP sessions, aka Bug ID CSCul28089.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1032010

Scores

EPSS 0.0167
EPSS Percentile 74.3%

Details

CWE
CWE-19
Status published
Products (21)
cisco/unity_connection 8.5\(1\)
cisco/unity_connection 8.5\(1\)su1
cisco/unity_connection 8.5\(1\)su2
cisco/unity_connection 8.5\(1\)su3
cisco/unity_connection 8.5\(1\)su4
cisco/unity_connection 8.5\(1\)su5
cisco/unity_connection 8.5\(1\)su6
cisco/unity_connection 8.5_base
cisco/unity_connection 8.6\(1\)
cisco/unity_connection 8.6\(1a\)
... and 11 more
Published Apr 03, 2015
Tracked Since Feb 18, 2026