Cisco Call Manager Security Flaw

According to TechWeb, flaws in Cisco's Call Manager software could allow an attacker to bring down the software resulting in a DoS (denial of service) attack that will knock your VoIP-based phone system offline.


According to Internet Security Systems' (ISS) X-Force research team, Cisco's CallManager has a pair of bugs that could be exploited by hackers. Cisco has released an advisory on this bug.

In addition to a potential denial-of-service style crash, ISS explains a possible scenarion where the attacker "could redirect calls at will or even eavesdrop on conversations". Yikes!

Expect to see lots of mainsteam news outlets quoting analysts who say "This is why VoIP is not ready for prime-time." or "VoIP is suitable for residential deployments, ala Vonage, CallVantage, etc. but businesses where phone service is critical should carefully consider the implications of using VoIP."

Oh no, the sky is falling! Find a bug in VoIP and all of sudden, VoIP isn't reliable enough. Sometimes the MSM (main-stream media) goes overboard by "sensationalizing" news. The Cisco bug is important, don't get me wrong, but I will be annoyed if I read some industry analyst who states VoIP is not good, practical, or "reliable" for businesses. I'm sure they will be out there with their egos - just to get their name in lights and quoted by the major news outlets.

And speaking of the MSM and sensationalizing, this reminds me of New York Sen. Chuck Schumer, who I just can't seem to get away from when I watch CNN, Fox News, etc. That man is everywhere espousing his opinion on everything from who President Bush should nominate to the Supreme Court to Karl Rove should be fired, etc. etc. Everything to Sen. Schumer is a damn crisis. He seems like a bright enough guy, but I just have to change the channel whenever he comes on. His ego is too big - even for me.

| 0 Comments | 0 TrackBacks

Listed below are links to sites that reference Cisco Call Manager Security Flaw:

Cisco Call Manager Security Flaw TrackBack URL : http://blog.tmcnet.com/mt/mt-tb.cgi/9443

Leave a comment

Recent Activity

Friday

  • Tom Keating posted VoIP in Google ChromeOS
  • Tom Keating tweeted, "VoIP in Google ChromeOS: Google released their ChromeOS operating system yesterday. So naturally, as a VoIP fan I w... http://bit.ly/3T68Ox"

Thursday

More...

Recent Comments

  • precoz: I am wondering, if the VOIP market is still increasing read more
  • Dustin: But that's not the point at all. The majority of read more
  • commangerYEK: Nicely done! read more
  • bstella: How did you get an email address to write to read more
  • Paul: Hi Mike, For Cisco (and normal SIP) passive VoIP recording read more
  • redshirt6: Yes, dying to know if it worked! rs6 read more
  • bruno.clermont: SkypeOut work only if I added their phone number as read more
  • bruno.clermont: I just installed it and try to do some call. read more
  • Kris: Tom, I'm curious. Did you ever get any resolution on read more
  • dsi r4: This is the age of smart phone.Nimbuzz launches it's phone read more

Subscribe to Blog

Recent Entry Images

  • google-chromos-flaphone-voip.jpg
  • startech-conxit-tool.jpg
  • thanksgiving-turkey.jpg
  • verizon-island-of-misfit-toys.jpg
  • mindtouch-cloud.jpg
  • microsoft-windows-20-history.jpg
  • taylor-randall-the-price-is-right.jpg
  • fring-google-android-skype.png
  • gotomeeting-logo.gif

Entry Archives

Around TMCnet Blogs

Latest Whitepapers

TMCnet Videos