>> Cisco CallManager Connections Handling Denial of Service Vulnerabilities
Title : Cisco CallManager Connections Handling Denial of Service Vulnerabilities VUPEN ID : VUPEN/ADV-2006-0249 CVE ID : CVE-2006-0368
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-01-19
Technical Description
Two vulnerability were identified in Cisco CallManager, which could be exploited by remote attackers to cause a denial of service.
The first issue is due to an error where the device does not properly time out TCP connections to port 2000, which could be exploited by attackers to exhaust all available memory resources causing a denial of service.
The second flaw is due to an error when handling multiple connections to ports 2001, 2002 or 7727, which could be exploited by attackers to fill up the Windows message queue and prevent CCM from transacting with the Windows Service Manager, causing a restart after a 30 second timeout.