Vulnerabilities > CVE-2003-1108 - Unspecified vulnerability in Alcatel-Lucent Omnipcx 5.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
PARTIAL Summary
The Session Initiation Protocol (SIP) implementation in Alcatel OmniPCX Enterprise 5.0 Lx allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Oval
accepted | 2008-09-08T04:00:49.911-04:00 | ||||
class | vulnerability | ||||
contributors |
| ||||
description | The Session Initiation Protocol (SIP) implementation in Alcatel OmniPCX Enterprise 5.0 Lx allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite. | ||||
family | ios | ||||
id | oval:org.mitre.oval:def:5831 | ||||
status | accepted | ||||
submitted | 2008-05-26T11:06:36.000-04:00 | ||||
title | Multiple Vendor Session Initiation Protocol Denial of Service Vulnerability | ||||
version | 3 |
References
- http://www.cert.org/advisories/CA-2003-06.html
- http://www.ee.oulu.fi/research/ouspg/protos/testing/c07/sip/
- http://www.kb.cert.org/vuls/id/528719
- http://www.securityfocus.com/bid/6904
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11379
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5831