Vulnerability Description
Buffer overflow in multiple Multi-Tech Systems MultiVOIP devices with firmware before x.08 allows remote attackers to execute arbitrary code via a long INVITE field in a Session Initiation Protocol (SIP) packet.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Multi-Tech Systems | Multivoip | All versions |
References
- http://secunia.com/advisories/17852
- http://securityreason.com/securityalert/231
- http://securitytracker.com/id?1015314
- http://www.securityfocus.com/archive/1/418653/100/0/threaded
- http://www.securityfocus.com/bid/15711
- http://www.securitylab.net/research/2005/12/buffer_overflow_in_multitech_v.htmlPatchVendor Advisory
- http://www.vupen.com/english/advisories/2005/2781
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23416
- http://secunia.com/advisories/17852
- http://securityreason.com/securityalert/231
- http://securitytracker.com/id?1015314
- http://www.securityfocus.com/archive/1/418653/100/0/threaded
- http://www.securityfocus.com/bid/15711
- http://www.securitylab.net/research/2005/12/buffer_overflow_in_multitech_v.htmlPatchVendor Advisory
- http://www.vupen.com/english/advisories/2005/2781
FAQ
What is CVE-2005-4050?
CVE-2005-4050 is a vulnerability with a CVSS score of 7.5 (HIGH). Buffer overflow in multiple Multi-Tech Systems MultiVOIP devices with firmware before x.08 allows remote attackers to execute arbitrary code via a long INVITE field in a Session Initiation Protocol (S...
How severe is CVE-2005-4050?
CVE-2005-4050 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-4050?
Check the references section above for vendor advisories and patch information. Affected products include: Multi-Tech Systems Multivoip.