7.5
CVSSv2

CVE-2003-1109

Published: 31/12/2003 Updated: 30/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The Session Initiation Protocol (SIP) implementation in multiple Cisco products including IP Phone models 7940 and 7960, IOS versions in the 12.2 train, and Secure PIX 5.2.9 to 6.2.2 allows remote malicious users to cause a denial of service and possibly execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios 12.2\\(1\\)xd

cisco ios 12.2\\(1\\)xd1

cisco ios 12.2\\(1\\)xq

cisco ios 12.2\\(1\\)xs

cisco ios 12.2\\(1\\)xs1

cisco ios 12.2\\(2\\)xb3

cisco ios 12.2\\(2\\)xb4

cisco ios 12.2\\(2\\)xi1

cisco ios 12.2\\(2\\)xi2

cisco ios 12.2\\(2\\)xu

cisco ios 12.2\\(2\\)xu2

cisco ios 12.2xf

cisco ios 12.2xg

cisco ios 12.2xn

cisco ios 12.2xq

cisco ios 12.2\\(1\\)xa

cisco ios 12.2\\(1\\)xe3

cisco ios 12.2\\(1\\)xh

cisco ios 12.2\\(2\\)xa5

cisco ios 12.2\\(2\\)xb

cisco ios 12.2\\(2\\)xh3

cisco ios 12.2\\(2\\)xi

cisco ios 12.2\\(2\\)xn

cisco ios 12.2\\(2\\)xt

cisco ios 12.2\\(2\\)xt3

cisco ios 12.2xd

cisco ios 12.2xe

cisco ios 12.2xl

cisco ios 12.2xm

cisco ios 12.2\\(1\\)xe

cisco ios 12.2\\(1\\)xe2

cisco ios 12.2\\(2\\)xa

cisco ios 12.2\\(2\\)xa1

cisco ios 12.2\\(2\\)xh

cisco ios 12.2\\(2\\)xh2

cisco ios 12.2\\(2\\)xk

cisco ios 12.2\\(2\\)xk2

cisco ios 12.2xb

cisco ios 12.2xc

cisco ios 12.2xj

cisco ios 12.2xk

cisco ios 12.2xt

cisco ios 12.2xw

cisco ios 12.2\\(1\\)xd3

cisco ios 12.2\\(1\\)xd4

cisco ios 12.2\\(11\\)t

cisco ios 12.2\\(2\\)t4

cisco ios 12.2\\(2\\)xf

cisco ios 12.2\\(2\\)xg

cisco ios 12.2\\(2\\)xj

cisco ios 12.2\\(2\\)xj1

cisco ios 12.2t

cisco ios 12.2xa

cisco ios 12.2xh

cisco ios 12.2xi

cisco ios 12.2xr

cisco ios 12.2xs

cisco pix_firewall_software 5.2\\(1\\)

cisco pix_firewall_software 5.2\\(2\\)

cisco pix_firewall_software 5.3\\(1.200\\)

cisco pix_firewall_software 5.3\\(2\\)

cisco ip_phone_7940

cisco ip_phone_7960

cisco pix_firewall_software 5.3

cisco pix_firewall_software 5.3\\(1\\)

cisco pix_firewall_software 6.1\\(2\\)

cisco pix_firewall_software 6.2\\(1\\)

cisco pix_firewall_software 5.2\\(6\\)

cisco pix_firewall_software 5.2\\(7\\)

cisco pix_firewall_software 6.0\\(1\\)

cisco pix_firewall_software 6.0\\(2\\)

cisco pix_firewall_software 5.2\\(3.210\\)

cisco pix_firewall_software 5.2\\(5\\)

cisco pix_firewall_software 5.3\\(3\\)

cisco pix_firewall_software 6.0

Vendor Advisories

Multiple Cisco products contain vulnerabilities in the processing of Session Initiation Protocol (SIP) INVITE messages These vulnerabilities were identified by the University of Oulu Secure Programming Group (OUSPG) "PROTOS" Test Suite for SIP and can be repeatedly exploited to produce a denial of service This advisory is available a ...