- Joined
- Jun 8, 2009
- Messages
- 18
- Reaction score
- 1
CISA is reporting this Yealink Vulnerability: Improper Restriction of Excessive Authentication Attempts, Allocation of Resources Without Limits or Throttling, Incorrect Authorization, Improper Certificate Validation
https://www.cisa.gov/news-events/ics-advisories/icsa-25-219-08
Any idea when we might get the latest firmware updates to mitigate this vulnerability?
https://www.cisa.gov/news-events/ics-advisories/icsa-25-219-08
Any idea when we might get the latest firmware updates to mitigate this vulnerability?
3.1 AFFECTED PRODUCTS
The following versions of Yealink IP products are affected:- SIP-T19P_E2: Versions prior to 53.84.0.121
- SIP-T21P_E2: Versions prior to 52.84.0.121
- SIP-T23G: Versions prior to 44.84.0.121
- SIP-T40G: Versions prior to 76.84.0.121
- SIP-T40P: Versions prior to 54.84.0.121
- SIP-T27G: Versions prior to 69.84.0.121
- SIP-T41S: Versions prior to 66.84.0.121
- SIP-T42S: Versions prior to 66.84.0.121
- SIP-T46S: Versions prior to 66.84.0.121
- SIP- T48S: Versions prior to 66.84.0.121
- SIP-CP920: Versions prior to 78.84.0.121
- SIP-T53: Versions prior to X.84.0.121
- SIP-T53W: Versions prior to X.84.0.121
- SIP-T54W: Versions prior to X.84.0.121
- SIP-T57W: Versions prior to X.84.0.121
- SIP-T56A: Versions prior to 58.84.0.37
- SIP-T58: Versions prior to 58.84.0.37
- W52P: Versions prior to 25.81.0.67
- W60B: Versions prior to 77.83.0.83
- CP960: Versions prior to 73.84.0.37
- SIP-T27P: Version 45.83.0.160 and prior
- SIP-T29G: Version 46.83.0.160 and prior
- SIP-T41P: Version 36.83.0.160 and prior
- SIP-T42G: Version 29.83.0.160 and prior
- SIP-T46G: Version 28.83.0.160 and prior
- SIP-T48G: Version 35.83.0.160 and prior
- SIP-T20P: All versions
- SIP-T22P: All versions
- SIP-T26P: All versions
- SIP-T27P: All versions
- T52S: All versions
- T54S: All versions
- RPS (Redirect and Provisioning Service): All builds prior to 05-26-2025