CVE-2006-5277

Off-by-one error in the Certificate Trust List (CTL) Provider service (CTLProvider.exe) in Cisco Unified Communications Manager (CUCM, formerly CallManager) before 20070711 allow remote attackers to execute arbitrary code via a crafted packet that triggers a heap-based buffer overflow.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:cisco:unified_callmanager:*:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_callmanager:*:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_callmanager:*:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_callmanager:5.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-07-15 21:30

Updated : 2023-12-10 10:40


NVD link : CVE-2006-5277

Mitre link : CVE-2006-5277

CVE.ORG link : CVE-2006-5277


JSON object : View

Products Affected

cisco

  • unified_communications_manager
  • unified_callmanager