Mission and Overview
NVD is the U.S. government repository of standards based vulnerability management data. This data enables automation of vulnerability management, security measurement, and compliance (e.g. FISMA).
Resource Status
NVD contains:
CVE Vulnerabilities
39671
Checklists
129
US-CERT Alerts
187
US-CERT Vuln Notes
2351
OVAL Queries
2517
CPE Names
17905

Last updated: Sun Nov 22 18:44:50 EST 2009

CVE Publication rate: 9.67

Email List

NVD provides four mailing lists to the public. For information and subscription instructions please visit NVD Mailing Lists

Workload Index

Vulnerability Workload Index: 5.3

About Us
NVD is a product of the NIST Computer Security Division and is sponsored by the Department of Homeland Security's National Cyber Security Division. It supports the U.S. government multi-agency (OSD, DHS, NSA, DISA, and NIST) Information Security Automation Program. It is the U.S. government content repository for the Security Content Automation Protocol (SCAP).

National Cyber-Alert System

Vulnerability Summary for CVE-2007-5640

Original release date:10/23/2007
Last revised:11/15/2008
Source: US-CERT/NIST

Overview

The Nortel UNIStim IP Softphone 2050, IP Phone 1140E, and additional Nortel products from the IP Phone, Business Communications Manager (BCM), Mobile Voice Client, and other product lines, allow remote attackers to block calls and force re-registration via a resume message to the Signaling Server that has a spoofed source IP address for the phone. NOTE: the attack is more disruptive if a new spoofed resume message is sent after each re-registration.

Impact

CVSS Severity (version 2.0):
CVSS v2 Base Score:7.1 (HIGH) (AV:N/AC:M/Au:N/C:N/I:N/A:C) (legend)
Impact Subscore: 6.9
Exploitability Subscore: 8.6
CVSS Version 2 Metrics:
Access Vector: Network exploitable; Victim must voluntarily interact with attack mechanism
Access Complexity: Medium
Authentication: Not required to exploit
Impact Type:Allows disruption of serviceUnknown

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to nvd@nist.gov.

External Source: CONFIRM
Name: http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=654641
Type: Patch Information
External Source: XF
Name: nortel-ipphone-register-dos(37254)
External Source: BID
Name: 26124
External Source: BUGTRAQ
Name: 20071018 Nortel IP Phone forced re-authentication
External Source: MISC
Name: http://www.csnc.ch/static/advisory/csnc/nortel_IP_phone_forced_re-authentication_v1.0.txt
External Source: SECUNIA
Name: 27234
Type: Advisory
External Source: OSVDB
Name: 41772
External Source: SREASON
Name: 3274

Vulnerable software and versions

Nav control imageConfiguration 1
spacerNav control imageAND
spacerspacerNav control imageOR
spacerspacerline trunkNav control imagecpe:/a:nortel:multimedia_communication_server_5100
spacerspacerline trunkNav control imagecpe:/a:nortel:multimedia_communication_server_5200
spacerspacerNav control imageOR
spacerspacerline trunkNav control imagecpe:/a:nortel:communications_server:1000e
spacerspacerline trunkNav control imagecpe:/a:nortel:communications_server:1000m
spacerspacerline trunkNav control imagecpe:/a:nortel:communications_server:1000s
spacerspacerline trunkNav control imagecpe:/a:nortel:communications_server:2100
spacerspacerline trunkNav control imagecpe:/h:nortel:ip_audio_conference_phone_2033
spacerspacerline trunkNav control imagecpe:/h:nortel:ip_phone_1110
spacerspacerline trunkNav control imagecpe:/h:nortel:ip_phone_1120e
spacerspacerline trunkNav control imagecpe:/h:nortel:ip_phone_1140e
spacerspacerline trunkNav control imagecpe:/h:nortel:ip_phone_1150e
spacerspacerline trunkNav control imagecpe:/h:nortel:ip_phone_2001
spacerspacerline trunkNav control imagecpe:/h:nortel:ip_phone_2002
spacerspacerline trunkNav control imagecpe:/h:nortel:ip_phone_2004
spacerspacerline trunkNav control imagecpe:/h:nortel:ip_phone_2007
spacerspacerline trunkNav control imagecpe:/h:nortel:wlan_handset_2210
spacerspacerline trunkNav control imagecpe:/h:nortel:wlan_handset_2211
spacerspacerline trunkNav control imagecpe:/h:nortel:wlan_handset_2212
spacerspacerline trunkNav control imagecpe:/h:nortel:wlan_handset_6120
spacerspacerline trunkNav control imagecpe:/h:nortel:wlan_handset_6140
spacerspacerNav control imageOR
spacerspacerspacerNav control image* cpe:/a:nortel:business_communications_manager:1000
spacerspacerspacerNav control image* cpe:/a:nortel:business_communications_manager:200
spacerspacerspacerNav control image* cpe:/a:nortel:business_communications_manager:400
spacerspacerspacerNav control image* cpe:/a:nortel:business_communications_manager:50
spacerspacerspacerNav control image* cpe:/a:nortel:business_communications_manager:50a
spacerspacerspacerNav control image* cpe:/a:nortel:business_communications_manager:50e
spacerspacerspacerNav control image* cpe:/a:nortel:business_communications_manager:srg200
spacerspacerspacerNav control image* cpe:/a:nortel:business_communications_manager:srg50
spacerspacerspacerNav control image* cpe:/a:nortel:centrex_ip_client_manager
spacerspacerspacerNav control image* cpe:/a:nortel:centrex_ip_element_manager
spacerspacerspacerNav control image* cpe:/a:nortel:meridian_option_11c
spacerspacerspacerNav control image* cpe:/a:nortel:meridian_option_51c
spacerspacerspacerNav control image* cpe:/a:nortel:meridian_option_61c
spacerspacerspacerNav control image* cpe:/a:nortel:meridian_option_81c
spacerspacerspacerNav control image* cpe:/a:nortel:meridian_sl100:cs2100
spacerspacerspacerNav control image* cpe:/a:nortel:mobile_voice_client_2050
* Denotes Vulnerable Software

Technical Details

Vulnerability Type (View All)