We have a customer that had a 3rd party Security Assesment done on thier network. One of the things that came about was the IP phones reported a Dropbear Authentication Flaw. This is CCM 5.1 installation, I have updated the load files on all the phones to SCCP41.8-3-2S and SCCP11.8-3-2S respectively...I don't know if this will resolve the issue or if it is even an issue. Has anyone come across this before.
Looks to me like a false-positive based on this info:
04.30.13 - CVE: Not Available
Title: Dropbear SSH Server Authentication Bypass
Description: Dropbear SSH Server is a secure shell server. An authentication bypass issue exists in the software, which can allow malicious users to manipulate authentication credentials in order to take control of the process' execution flow. All current versions are affected.
I'm not able to access my old voice mail messages all of a sudden. The recording says something like 'the message is currently not available'. This has never happened before in all the years I have been using this system. I have t...