MEDIUM · 5.0

CVE-2005-4794

Cisco IP Phones 7902/7905/7912, ATA 186/188, Unity Express, ACNS, and Subscriber Edge Services Manager (SESM) allows remote attackers to cause a denial of service (crash or instability) via a compress...

Vulnerability Description

Cisco IP Phones 7902/7905/7912, ATA 186/188, Unity Express, ACNS, and Subscriber Edge Services Manager (SESM) allows remote attackers to cause a denial of service (crash or instability) via a compressed DNS packet with a label length byte with an incorrect offset.

CVSS Score

5.0

MEDIUM

AV:N/AC:L/Au:N/C:N/I:N/A:P
Confidentiality
NONE
Integrity
NONE
Availability
PARTIAL

Affected Products

VendorProductVersions
CiscoApplication And Content Networking SoftwareAll versions
CiscoAta186
CiscoSubscriber Edge Services ManagerAll versions
CiscoIp Phone 7902All versions
CiscoIp Phone 7905All versions
CiscoIp Phone 7912All versions
CiscoUnity ExpressAll versions

References

FAQ

What is CVE-2005-4794?

CVE-2005-4794 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Cisco IP Phones 7902/7905/7912, ATA 186/188, Unity Express, ACNS, and Subscriber Edge Services Manager (SESM) allows remote attackers to cause a denial of service (crash or instability) via a compress...

How severe is CVE-2005-4794?

CVE-2005-4794 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2005-4794?

Check the references section above for vendor advisories and patch information. Affected products include: Cisco Application And Content Networking Software, Cisco Ata, Cisco Subscriber Edge Services Manager, Cisco Ip Phone 7902, Cisco Ip Phone 7905.