Vulnerabilities > CVE-2003-1108 - Unspecified vulnerability in Alcatel-Lucent Omnipcx 5.0

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
alcatel-lucent

Summary

The Session Initiation Protocol (SIP) implementation in Alcatel OmniPCX Enterprise 5.0 Lx allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite.

Vulnerable Configurations

Part Description Count
Application
Alcatel-Lucent
1

Oval

accepted2008-09-08T04:00:49.911-04:00
classvulnerability
contributors
nameYuzheng Zhou
organizationHewlett-Packard
descriptionThe Session Initiation Protocol (SIP) implementation in Alcatel OmniPCX Enterprise 5.0 Lx allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite.
familyios
idoval:org.mitre.oval:def:5831
statusaccepted
submitted2008-05-26T11:06:36.000-04:00
titleMultiple Vendor Session Initiation Protocol Denial of Service Vulnerability
version3