According to TechWeb, flaws in Cisco's Call Manager software could allow an attacker to bring down the software resulting in a DoS (denial of service) attack that will knock your VoIP-based phone system offline.
According to Internet Security Systems' (ISS) X-Force research team, Cisco's CallManager has a pair of bugs that could be exploited by hackers. Cisco has released an advisory on this bug.
In addition to a potential denial-of-service style crash, ISS explains a possible scenarion where the attacker "could redirect calls at will or even eavesdrop on conversations". Yikes!
Expect to see lots of mainsteam news outlets quoting analysts who say "This is why VoIP is not ready for prime-time." or "VoIP is suitable for residential deployments, ala Vonage, CallVantage, etc. but businesses where phone service is critical should carefully consider the implications of using VoIP."
Oh no, the sky is falling! Find a bug in VoIP and all of sudden, VoIP isn't reliable enough. Sometimes the MSM (main-stream media) goes overboard by "sensationalizing" news. The Cisco bug is important, don't get me wrong, but I will be annoyed if I read some industry analyst who states VoIP is not good, practical, or "reliable" for businesses. I'm sure they will be out there with their egos - just to get their name in lights and quoted by the major news outlets.
And speaking of the MSM and sensationalizing, this reminds me of New York Sen. Chuck Schumer, who I just can't seem to get away from when I watch CNN, Fox News, etc. That man is everywhere espousing his opinion on everything from who President Bush should nominate to the Supreme Court to Karl Rove should be fired, etc. etc. Everything to Sen. Schumer is a damn crisis. He seems like a bright enough guy, but I just have to change the channel whenever he comes on. His ego is too big - even for me.
Cisco Call Manager Security Flaw
Categories:
Tags:
- cisco Related Tags: denial service, cisco, service, should
- Related Entries to Cisco Call Manager Security Flaw
- SmartSIP Launches for OCS 2007 R2 Enabling Any SIP Phone & Any SIP Trunking Service Provider - Mar 04, 2009
- John Chambers Blogs about Broadband Stimulus on GigaOM - Mar 04, 2009
- SHSU Switches Back to Cisco CallManager from Asterisk - Feb 27, 2009
- Cisco TelePresence Video Conferencing Enables Fans to Interact with NBA Players - Feb 13, 2009
- Cisco Unified MeetingPlace 7.0 with WebEx integration Review - Feb 05, 2009
- Cisco ASR 9000 High-end Router Launches - Nov 11, 2008
- Cisco AutoQoS Enables Easy VoIP QoS - Sep 11, 2008
- Digium AsteriskNOW News and more... - Aug 25, 2008
- The IP-PBX Energy Wars... - Aug 04, 2008
- Cisco Manager Meets Jurassic Park - Jul 10, 2008
Listed below are links to sites that reference Cisco Call Manager Security Flaw:
Cisco Call Manager Security Flaw TrackBack URL : http://blog.tmcnet.com/mt/mt-tb.cgi/9443
Search
Related Entries
- SmartSIP Launches for OCS 2007 R2 Enabling Any SIP Phone & Any SIP Trunking Service Provider
- John Chambers Blogs about Broadband Stimulus on GigaOM
- SHSU Switches Back to Cisco CallManager from Asterisk
- Cisco TelePresence Video Conferencing Enables Fans to Interact with NBA Players
- Cisco Unified MeetingPlace 7.0 with WebEx integration Review
- Cisco ASR 9000 High-end Router Launches
- Cisco AutoQoS Enables Easy VoIP QoS
- Digium AsteriskNOW News and more...
- The IP-PBX Energy Wars...
- Cisco Manager Meets Jurassic Park
Find Me Elsewhere
Recent Activity
Saturday
- Tom Keating tweeted, "Spending 4th of July with in-laws on their lake-side house. Coming soon - fireworks!" Tom Keating tweeted, "Spending 4th of July with in-laws on their lake-side house. Coming soon - fireworks!" Tom Keating tweeted, "Spending 4th of July with in-laws on their lake-side house. Coming soon - fireworks!" 2009-07-04T15:00:41Z 2009-07-04T15:00:41Z
Friday
- Tom Keating queued Star Trek Tom Keating queued Star Trek Tom Keating queued Star Trek 2009-07-03T20:57:21Z 2009-07-03T20:57:21Z
- Tom Keating queued Stardust Tom Keating queued Stardust Tom Keating queued Stardust 2009-07-03T20:57:21Z 2009-07-03T20:57:21Z
- Tom Keating queued The Fountain Tom Keating queued The Fountain Tom Keating queued The Fountain 2009-07-03T20:57:21Z 2009-07-03T20:57:21Z
Thursday
- Tom Keating queued The Legend of Johnny Lingo Tom Keating queued The Legend of Johnny Lingo Tom Keating queued The Legend of Johnny Lingo 2009-07-02T16:12:19Z 2009-07-02T16:12:19Z
- Tom Keating queued Dreamer: Inspired by a True Story Tom Keating queued Dreamer: Inspired by a True Story Tom Keating queued Dreamer: Inspired by a True Story 2009-07-02T16:12:19Z 2009-07-02T16:12:19Z
- Tom Keating queued Open Season 2 Tom Keating queued Open Season 2 Tom Keating queued Open Season 2 2009-07-02T16:12:16Z 2009-07-02T16:12:16Z
- Tom Keating queued Arthur and the Invisibles Tom Keating queued Arthur and the Invisibles Tom Keating queued Arthur and the Invisibles 2009-07-02T16:12:16Z 2009-07-02T16:12:16Z
Recent Entries
- Worst Google News Headline Ever! - No public viewing at Neverland, but Michael Jackson may get laid
- eBuddy for iPhone Supports Push Notifications
- Skype for iPhone 1.1 Update
- Apple, Nokia, RIM, Samsung, & others settle on micro-USB phone charger standard
- Big Stage Adds Cool 3D Avatars to Skype
- Military Suspension Plan from VoIP Providers - Who's Going to Step Up?
- WildCharge Wire-free charger for iPhone & iPod touch
- He's Barack Obama Spoof
- Skype Video Calls on Google Android
- flaphone, the Flash Web-based SIP-to-SIP & SIP-to-Skype VoIP App, Adds New Features
- Elektrobit MID Reference Design Aims to put Linux Desktop apps + Smartphone in your pocket
- Walmart Father's Day Deals For Every Dad's "Man Cave"
Recent Comments
- ctjames: Yes , I've tried several times by using Cydia installed read more
- http://openid.aol.com/drdaraban: Yes, I confirm antonioj's comment, both skype and the app read more
- cmytroops: I was browsing the net and cam across a great read more
- mike: Sorry if this is off topic but I’m thinking of read more
- @NumberGarage: Our military service men and women should be driving new read more
- https://www.google.com/accounts/o8/id?id=AItOawlacBYIyCFI8mz5HS_pdsnSDV1wLz6Vgc8: We have implemented over 50 VoIP systems in the last read more
- Theo Barton: Its a good phone. I have had a lot of read more
- https://me.yahoo.com/a/ea7WMvNu2Mlud7dBwQPAAus9JCfo9qE-#27391: I don't want to go through all the problems, I read more
- Claudio G.: I contacted these folks via e-mail recently (June 2009)and they read more
- Kinjudah De- Morgan: I am using a strong satelite receiver and a Gateway read more
Subscribe to Blog
Categories
- Apple (128)
- BitTyrant (1)
- Bittorrent (1)
- Call Center and CRM (43)
- Computer Hardware (154)
- Computer Software (65)
- Gadgets (488)
- Google (122)
- Home Entertainment (194)
- Internet (51)
- Linux (94)
- Microsoft (228)
- MovableType (44)
- News (158)
- Personal and Humor (92)
- Social Networking (5)
- Sports/Outdoor Technology (5)
- Technology and Science (263)
- Unified Communications (160)
- VoIP (1651)
- Wireless (352)
- p2p (14)
Blogroll
- Rich Tehrani
- Greg Galitzine
- Network Observations
- VoIP Monitor
- TopBlogPosts
- PhoneArea
- The VoIP Weblog
- The Gadgeteer
- Asterisk VoIP Blog
- Irwin Lazar's Real-Time Blog
- Richard Stastny's VoIP and Enum
- IP Inferno
- James Seng blog
- SmithOnVoIP
- Aswath Weblog
- Luca Filigheddu
- Gadget for girls
- The Third Screen
- Gadget & Gift Blog
- Cordless Phone Reviews
- VoIP Guides
- HDTV Lounge
- VoIP news
- Andy Abramson
- Interesting Links
- VoIP News
- VoIP Reviews
Sign In
Around TMCnet Blogs
Communications and Technology Blog - Tehrani.com:
Problems at JoostOn Rad's Radar?:
USF and Rural ReformVoIP & Gadgets Blog:
Worst Google News Headline Ever! - No public viewingCommunications and Technology Blog - Tehrani.com:
Heading to Rhode IslandFirst Coffee:
SugarCRM Studied, Broadband 'Crucial,' EGain, OOCOSPI, NetSuite's ZanderOn Rad's Radar?:
Bells Giving Up on Landlines?The Readerboard:
Tougher Actions To Save TelemarketingVoIP & Gadgets Blog:
eBuddy for iPhone Supports Push Notifications


Technorati
Del.icio.us
Slashdot
Digg
twitter
Leave a comment