A key length vulnerability in the implementation of the SRTP 128-bit key on Mitel 6800 and 6900 SIP series phones, versions 5.1.0.2051 SP2 and earlier, could allow an attacker to launch a man-in-the-middle attack when SRTP is used in a call. A successful exploit may allow the attacker to intercept sensitive information.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Mitel
Subscribe
|
6863i
Subscribe
6863i Firmware
Subscribe
6865i
Subscribe
6865i Firmware
Subscribe
6867i
Subscribe
6867i Firmware
Subscribe
6869i
Subscribe
6869i Firmware
Subscribe
6873i
Subscribe
6873i Firmware
Subscribe
6920
Subscribe
6920 Firmware
Subscribe
6930
Subscribe
6930 Firmware
Subscribe
6940
Subscribe
6940 Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-8558 | A key length vulnerability in the implementation of the SRTP 128-bit key on Mitel 6800 and 6900 SIP series phones, versions 5.1.0.2051 SP2 and earlier, could allow an attacker to launch a man-in-the-middle attack when SRTP is used in a call. A successful exploit may allow the attacker to intercept sensitive information. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T02:02:39.895Z
Reserved: 2019-11-11T00:00:00
Link: CVE-2019-18863
No data.
Status : Modified
Published: 2020-03-02T18:15:10.667
Modified: 2024-11-21T04:33:44.357
Link: CVE-2019-18863
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD