CVE-2007-3349
Last modified
CVE-2007-3349 is a vulnerability of currently unknown severity. The Aastra 9112i SIP Phone with firmware 1.4.0.1048 and boot version 1.1.0.10 allows remote attackers to (1) cause a denial of service (device freeze) via a malformed SIP message of a certain length or (2) cause a denial of service (continuous ring) via a malformed SIP message of a certain other length.. EPSS estimates a 1.92% chance of exploitation in the next 30 days.
Description
The Aastra 9112i SIP Phone with firmware 1.4.0.1048 and boot version 1.1.0.10 allows remote attackers to (1) cause a denial of service (device freeze) via a malformed SIP message of a certain length or (2) cause a denial of service (continuous ring) via a malformed SIP message of a certain other length.
Metrics
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Aastra Telecom | 9112i Sip Phone | 1.4.0.1048 | 1.1.0.10 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-3349?
How severe is CVE-2007-3349?
How do I fix CVE-2007-3349?
Are you affected by CVE-2007-3349?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
