Denial of Service Vulnerability in Cisco IP Phone 8800 Series
CVE-2017-12328
5.8MEDIUM
What is CVE-2017-12328?
A security flaw exists in the Session Initiation Protocol (SIP) handling of Cisco IP Phone 8800 Series devices, allowing an unauthenticated remote attacker to disrupt service. By sending a malformed SIP packet, the attacker can trigger an unexpected restart of the SIP process, resulting in a denial of service condition where all active calls are dropped. This vulnerability arises from improper input validation in the SIP packet header. Organizations using affected devices should implement security measures to mitigate potential attacks and ensure reliable communication.
Affected Version(s)
Cisco IP Phone 8800 Series Cisco IP Phone 8800 Series