Cybertrion Systems

[3/5] Avaya Products PCRE Regex Parsing Multiple Vulnerabilities

November 29th, 2007 by
[3/5] Avaya Products PCRE Regex Parsing Multiple Vulnerabilities

:Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise an application using the library.For more information:SA27610The following products and versions are affected:* Avaya Communication Manager (CM 3.1, CM 4.x)* Avaya Intuity AUDIX LX (IALX 2.0)* Avaya Messaging Storage Server (MSS 3.x)* Avaya Message Networking (MN 3.1)* Avaya CCS/SES (3.1.1, 3.1.2, 4.0)* Avaya AES (AES 4.0.1)Solution:The vendor recommends that local and network access to the affected systems be restricted until an update is available.Original Advisory:ASA-2007-493:http://support.avaya.com/elmodocs2/security/ASA-2007-493.htmOther References:SA27610:http://secunia.com/advisories/27610/

Original post by manisha

[3/5] Avaya Products PCRE Regex Parsing Multiple Vulnerabilities

Related Articles:
  • [3/5] PCRE Regex Parsing Multiple Vulnerabilities
  • [3/5] Avaya Products PCRE Multiple Vulnerabilities
  • [3/5] Avaya Products PCRE Character Class Processing Vulnerability
  • [2/5] Avaya Products httpd Multiple Vulnerabilities
  • [2/5] Avaya Products e2fsprogs Integer Overflow Vulnerabilities


  • Posted in Advisories - Exploits | | [3/5] Avaya Products PCRE Regex Parsing Multiple Vulnerabilities

    << [1/5] Sun Solaris Remote Procedure Call Module Denial of Service | [2/5] rPath update for idle and python >>