Lucene search

K
cveMitreCVE-2007-3443
HistoryJun 27, 2007 - 12:30 a.m.

CVE-2007-3443

2007-06-2700:30:00
mitre
web.nvd.nist.gov
24
research in motion
blackberry 7270
denial of service
vulnerability
cve-2007-3443
nvd

CVSS2

2.3

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:A/AC:M/Au:S/C:N/I:N/A:P

AI Score

6.6

Confidence

High

EPSS

0.004

Percentile

75.1%

The Research in Motion BlackBerry 7270 before 4.0 SP1 Bundle 108 does not properly manage transaction states, which allows remote attackers to cause a denial of service (temporary device hang) by sending a certain SIP INVITE message, but not providing an ACK when the call is answered.

Affected configurations

Nvd
Node
research_in_motion_limitedblackberry_7270Range4.0_sp1_bundle_83
VendorProductVersionCPE
research_in_motion_limitedblackberry_7270*cpe:2.3:h:research_in_motion_limited:blackberry_7270:*:*:*:*:*:*:*:*

CVSS2

2.3

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:A/AC:M/Au:S/C:N/I:N/A:P

AI Score

6.6

Confidence

High

EPSS

0.004

Percentile

75.1%

Related for CVE-2007-3443