Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2008-1333

Опубликовано: 20 мар. 2008
Источник: debian
EPSS Низкий

Описание

Format string vulnerability in Asterisk Open Source 1.6.x before 1.6.0-beta6 might allow remote attackers to execute arbitrary code via logging messages that are not properly handled by (1) the ast_verbose logging API call, or (2) the astman_append function.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
asteriskfixed1:1.4.18.1~dfsg-1package
asterisknot-affectedsargepackage

Примечания

  • Etch's release is unimportant, since not exploitable, but was fixed anyway

EPSS

Процентиль: 85%
0.02578
Низкий

Связанные уязвимости

ubuntu
больше 17 лет назад

Format string vulnerability in Asterisk Open Source 1.6.x before 1.6.0-beta6 might allow remote attackers to execute arbitrary code via logging messages that are not properly handled by (1) the ast_verbose logging API call, or (2) the astman_append function.

nvd
больше 17 лет назад

Format string vulnerability in Asterisk Open Source 1.6.x before 1.6.0-beta6 might allow remote attackers to execute arbitrary code via logging messages that are not properly handled by (1) the ast_verbose logging API call, or (2) the astman_append function.

github
больше 3 лет назад

Format string vulnerability in Asterisk Open Source 1.6.x before 1.6.0-beta6 might allow remote attackers to execute arbitrary code via logging messages that are not properly handled by (1) the ast_verbose logging API call, or (2) the astman_append function.

EPSS

Процентиль: 85%
0.02578
Низкий