Tracker / CVE-2012-5445
CVE-2012-5445
Medium 6.8
The kernel in Cisco Native Unix (CNU) on Cisco Unified IP Phone 7900 series devices (aka TNP phones) with software before 9.3.1-ES10 does not properly validate unspecified system calls, which allows attackers to execute arbitrary code or cause a denial of service (memory overwrite) via a crafted binary.
Affected products and versions
| cisco | skinny_client_control_protocol_software |
|---|---|
| cisco | skinny_client_control_protocol_software · … → 9.2\(4\) |
| cisco | unified_ip_phone |
| cisco | unified_ip_phone_7906g |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.