CVE-2008-5180

Microsoft Communicator, and Communicator in Microsoft Office 2010 beta, allows remote attackers to cause a denial of service (memory consumption) via a large number of SIP INVITE requests, which trigger the creation of many sessions.
References
Link Resource
http://secunia.com/advisories/32940 Broken Link
http://www.exploit-db.com/exploits/12079 Exploit Third Party Advisory VDB Entry
http://www.securityfocus.com/bid/39221 Broken Link Third Party Advisory VDB Entry
http://www.securitytracker.com/id?1021294 Broken Link Third Party Advisory VDB Entry
http://www.voipshield.com/research-details.php?id=133 Broken Link
https://exchange.xforce.ibmcloud.com/vulnerabilities/46673 Third Party Advisory VDB Entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/57581 Third Party Advisory VDB Entry
https://www.exploit-db.com/exploits/7262 Exploit Third Party Advisory VDB Entry
http://secunia.com/advisories/32940 Broken Link
http://www.exploit-db.com/exploits/12079 Exploit Third Party Advisory VDB Entry
http://www.securityfocus.com/bid/39221 Broken Link Third Party Advisory VDB Entry
http://www.securitytracker.com/id?1021294 Broken Link Third Party Advisory VDB Entry
http://www.voipshield.com/research-details.php?id=133 Broken Link
https://exchange.xforce.ibmcloud.com/vulnerabilities/46673 Third Party Advisory VDB Entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/57581 Third Party Advisory VDB Entry
https://www.exploit-db.com/exploits/7262 Exploit Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:microsoft:office_communicator:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:53

Type Values Removed Values Added
References () http://secunia.com/advisories/32940 - Broken Link () http://secunia.com/advisories/32940 - Broken Link
References () http://www.exploit-db.com/exploits/12079 - Exploit, Third Party Advisory, VDB Entry () http://www.exploit-db.com/exploits/12079 - Exploit, Third Party Advisory, VDB Entry
References () http://www.securityfocus.com/bid/39221 - Broken Link, Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/39221 - Broken Link, Third Party Advisory, VDB Entry
References () http://www.securitytracker.com/id?1021294 - Broken Link, Third Party Advisory, VDB Entry () http://www.securitytracker.com/id?1021294 - Broken Link, Third Party Advisory, VDB Entry
References () http://www.voipshield.com/research-details.php?id=133 - Broken Link () http://www.voipshield.com/research-details.php?id=133 - Broken Link
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/46673 - Third Party Advisory, VDB Entry () https://exchange.xforce.ibmcloud.com/vulnerabilities/46673 - Third Party Advisory, VDB Entry
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/57581 - Third Party Advisory, VDB Entry () https://exchange.xforce.ibmcloud.com/vulnerabilities/57581 - Third Party Advisory, VDB Entry
References () https://www.exploit-db.com/exploits/7262 - Exploit, Third Party Advisory, VDB Entry () https://www.exploit-db.com/exploits/7262 - Exploit, Third Party Advisory, VDB Entry

15 Oct 2024, 15:35

Type Values Removed Values Added
CVSS v2 : 5.0
v3 : unknown
v2 : 5.0
v3 : 5.3

02 Feb 2024, 03:07

Type Values Removed Values Added
CWE CWE-399 CWE-770
References (SECUNIA) http://secunia.com/advisories/32940 - (SECUNIA) http://secunia.com/advisories/32940 - Broken Link
References (BID) http://www.securityfocus.com/bid/39221 - (BID) http://www.securityfocus.com/bid/39221 - Broken Link, Third Party Advisory, VDB Entry
References (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/46673 - (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/46673 - Third Party Advisory, VDB Entry
References (MISC) http://www.voipshield.com/research-details.php?id=133 - (MISC) http://www.voipshield.com/research-details.php?id=133 - Broken Link
References (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/57581 - (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/57581 - Third Party Advisory, VDB Entry
References (EXPLOIT-DB) https://www.exploit-db.com/exploits/7262 - (EXPLOIT-DB) https://www.exploit-db.com/exploits/7262 - Exploit, Third Party Advisory, VDB Entry
References (SECTRACK) http://www.securitytracker.com/id?1021294 - (SECTRACK) http://www.securitytracker.com/id?1021294 - Broken Link, Third Party Advisory, VDB Entry
References (EXPLOIT-DB) http://www.exploit-db.com/exploits/12079 - (EXPLOIT-DB) http://www.exploit-db.com/exploits/12079 - Exploit, Third Party Advisory, VDB Entry

Information

Published : 2008-11-20 15:30

Updated : 2024-11-21 00:53


NVD link : CVE-2008-5180

Mitre link : CVE-2008-5180

CVE.ORG link : CVE-2008-5180


JSON object : View

Products Affected

microsoft

  • office_communicator
CWE
CWE-770

Allocation of Resources Without Limits or Throttling