Vulnerability Name: | CVE-2005-2241 (CCN-21323) | ||||||||
Assigned: | 2005-07-12 | ||||||||
Published: | 2005-07-12 | ||||||||
Updated: | 2008-09-05 | ||||||||
Summary: | Cisco CallManager (CCM) 3.2 and earlier, 3.3 before 3.3(5), 4.0 before 4.0(2a)SR2b, and 4.1 4.1 before 4.1(3)SR1 does not quickly time out Realtime Information Server Data Collection (RISDC) sockets, which results in a "resource leak" that allows remote attackers to cause a denial of service (memory and connection consumption) in RisDC.exe. | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: MITRE Type: CNA CVE-2005-2241 Source: CCN Type: Cisco Security Advisory 2005 July 12 1500 UTC Cisco CallManager Memory Handling Vulnerabilities Source: CCN Type: Cisco CallManager Web page Introduction Source: CISCO Type: Patch, Vendor Advisory 20050712 Cisco CallManager Memory Handling Vulnerabilities Source: CCN Type: OSVDB ID: 17845 Cisco CallManager RISDC Socket Saturation Memory Consumption DoS Source: BID Type: UNKNOWN 14250 Source: CCN Type: BID-14250 Cisco CallManager RISDC Remote Denial Of Service Vulnerability Source: CCN Type: BID-16295 Cisco CallManager Multiple Remote Denial Of Service Vulnerabilities Source: XF Type: UNKNOWN cisco-callmanager-risdc-dos(21323) | ||||||||
Vulnerable Configuration: | Configuration 1:![]() | ||||||||
BACK |