Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-8414

Опубликовано: 24 нояб. 2014
Источник: debian

Описание

ConfBridge in Asterisk 11.x before 11.14.1 and Certified Asterisk 11.6 before 11.6-cert8 does not properly handle state changes, which allows remote attackers to cause a denial of service (channel hang and memory consumption) by causing transitions to be delayed, which triggers a state change from hung up to waiting for media.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
asteriskfixed1:13.1.0~dfsg-1package
asteriskfixed1:11.13.1~dfsg-2jessiepackage
asterisknot-affectedwheezypackage
asteriskend-of-lifesqueezepackage

Примечания

  • https://issues.asterisk.org/jira/browse/ASTERISK-24440

  • http://downloads.digium.com/pub/security/AST-2014-014.html

Связанные уязвимости

ubuntu
около 11 лет назад

ConfBridge in Asterisk 11.x before 11.14.1 and Certified Asterisk 11.6 before 11.6-cert8 does not properly handle state changes, which allows remote attackers to cause a denial of service (channel hang and memory consumption) by causing transitions to be delayed, which triggers a state change from hung up to waiting for media.

nvd
около 11 лет назад

ConfBridge in Asterisk 11.x before 11.14.1 and Certified Asterisk 11.6 before 11.6-cert8 does not properly handle state changes, which allows remote attackers to cause a denial of service (channel hang and memory consumption) by causing transitions to be delayed, which triggers a state change from hung up to waiting for media.

github
больше 3 лет назад

ConfBridge in Asterisk 11.x before 11.14.1 and Certified Asterisk 11.6 before 11.6-cert8 does not properly handle state changes, which allows remote attackers to cause a denial of service (channel hang and memory consumption) by causing transitions to be delayed, which triggers a state change from hung up to waiting for media.