CVE-2015-0615
Last modified
CVE-2015-0615 is a vulnerability of currently unknown severity. The call-handling implementation in Cisco Unity Connection 8.5 before 8.5(1)SU7, 8.6 before 8.6(2a)SU4, 9.x before 9.1(2)SU2, and 10.0 before 10.0(1)SU1, when SIP trunk integration is enabled, allows remote attackers to cause a denial of service (port consumption) by improperly terminating SIP sessions, aka Bug ID CSCul28089.. EPSS estimates a 1.68% chance of exploitation in the next 30 days.
Description
The call-handling implementation in Cisco Unity Connection 8.5 before 8.5(1)SU7, 8.6 before 8.6(2a)SU4, 9.x before 9.1(2)SU2, and 10.0 before 10.0(1)SU1, when SIP trunk integration is enabled, allows remote attackers to cause a denial of service (port consumption) by improperly terminating SIP sessions, aka Bug ID CSCul28089.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Unity Connection | 8.5\(1\) |
| Cisco | Unity Connection | 8.5\(1\)su1 |
| Cisco | Unity Connection | 8.5\(1\)su2 |
| Cisco | Unity Connection | 8.5\(1\)su3 |
| Cisco | Unity Connection | 8.5\(1\)su4 |
| Cisco | Unity Connection | 8.5\(1\)su5 |
| Cisco | Unity Connection | 8.5\(1\)su6 |
| Cisco | Unity Connection | 8.5_base |
| Cisco | Unity Connection | 8.6\(1\) |
| Cisco | Unity Connection | 8.6\(1a\) |
| Cisco | Unity Connection | 8.6\(2\) |
| Cisco | Unity Connection | 8.6\(2a\) |
| Cisco | Unity Connection | 8.6\(2a\)su1 |
| Cisco | Unity Connection | 8.6\(2a\)su2 |
| Cisco | Unity Connection | 8.6\(2a\)su3 |
| Cisco | Unity Connection | 8.6_base |
| Cisco | Unity Connection | 9.0\(1\) |
| Cisco | Unity Connection | 9.1\(1\) |
| Cisco | Unity Connection | 9.1\(2\) |
| Cisco | Unity Connection | 10.0.0 |
| Cisco | Unity Connection | 10.0.5 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2015-0615?
How severe is CVE-2015-0615?
How do I fix CVE-2015-0615?
Are you affected by CVE-2015-0615?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
