[RT-SA-2015-005] o2/Telefonica Germany: ACS Discloses VoIP/SIP Credentials

Posted by RedTeam Pentesting GmbH on Jan 07

Advisory: o2/Telefonica Germany: ACS Discloses VoIP/SIP Credentials

The o2 Auto Configuration Server (ACS) discloses VoIP/SIP credentials of
arbitrary customers when receiving manipulated CWMP packets. These
credentials can then be used by an attacker to register any VoIP number
of the victim. This enables the attacker to place and receive calls on
behalf of the attacked user.

Details
=======

Product: o2 DSL Auto Configuration Server…

RHSA-2016:0012-1: Moderate: gnutls security update

Red Hat Enterprise Linux: Updated gnutls packages that fix one security issue are now available for
Red Hat Enterprise Linux 6 and 7.

Red Hat Product Security has rated this update as having Moderate security
impact. A Common Vulnerability Scoring System (CVSS) base score, which
gives a detailed severity rating, is available from the CVE link in the
References section.
CVE-2015-7575

RHSA-2016:0011-1: Moderate: samba security update

Red Hat Enterprise Linux: Updated samba packages that fix multiple security issues are now available
for Red Hat Enterprise Linux 6.

Red Hat Product Security has rated this update as having Moderate security
impact. Common Vulnerability Scoring System (CVSS) base scores, which give
detailed severity ratings, are available for each vulnerability from the
CVE links in the References section.
CVE-2015-5252, CVE-2015-5296, CVE-2015-5299

RHSA-2016:0010-2: Moderate: samba4 security update

Red Hat Enterprise Linux: Updated samba4 packages that fix multiple security issues are now available
for Red Hat Enterprise Linux 6.

Red Hat Product Security has rated this update as having Moderate security
impact. Common Vulnerability Scoring System (CVSS) base scores, which give
detailed severity ratings, are available for each vulnerability from the
CVE links in the References section.
CVE-2015-5252, CVE-2015-5296, CVE-2015-5299, CVE-2015-5330, CVE-2015-7540