VULNERABILITIES / FIXES - December 13, 2012
by Carol~
- 12/13/12 11:35 AM
Avaya Aura System Manager Denial of Service and Buffer Overflow Vulnerabilities
Release Date : 2012-12-13
Criticality level : Less critical
Impact : DoS
System access
Where : From local network
Solution Status : Vendor Patch
Software:
Avaya Aura System Manager 5.x
Avaya Aura System Manager 6.x
Description:
Avaya has acknowledged two vulnerabilities in Avaya Aura System Manager, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and by malicious people to compromise a vulnerable system.
The vulnerabilities are reported in versions 5.2, 6.0.x, 6.1.x, and 6.2.x.
Solution:
Update to version 6.3.
Original Advisory:
Avaya (ASA-2011-021, ASA-2011-122):
https://downloads.avaya.com/css/P8/documents/100126851
https://downloads.avaya.com/css/P8/documents/100134336
http://secunia.com/advisories/51578/

Moderator
CNET Staff
Samsung Staff
Dell Staff