Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-7617

Опубликовано: 10 апр. 2017
Источник: debian
EPSS Средний

Описание

Remote code execution can occur in Asterisk Open Source 13.x before 13.14.1 and 14.x before 14.3.1 and Certified Asterisk 13.13 before 13.13-cert3 because of a buffer overflow in a CDR user field, related to X-ClientCode in chan_sip, the CDR dialplan function, and the AMI Monitor action.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
asteriskfixed1:13.14.1~dfsg-1package
asterisknot-affectedjessiepackage
asterisknot-affectedwheezypackage

Примечания

  • http://downloads.asterisk.org/pub/security/AST-2017-001.html

EPSS

Процентиль: 96%
0.22039
Средний

Связанные уязвимости

CVSS3: 8.8
ubuntu
почти 9 лет назад

Remote code execution can occur in Asterisk Open Source 13.x before 13.14.1 and 14.x before 14.3.1 and Certified Asterisk 13.13 before 13.13-cert3 because of a buffer overflow in a CDR user field, related to X-ClientCode in chan_sip, the CDR dialplan function, and the AMI Monitor action.

CVSS3: 8.8
nvd
почти 9 лет назад

Remote code execution can occur in Asterisk Open Source 13.x before 13.14.1 and 14.x before 14.3.1 and Certified Asterisk 13.13 before 13.13-cert3 because of a buffer overflow in a CDR user field, related to X-ClientCode in chan_sip, the CDR dialplan function, and the AMI Monitor action.

CVSS3: 8.8
github
больше 3 лет назад

Remote code execution can occur in Asterisk Open Source 13.x before 13.14.1 and 14.x before 14.3.1 and Certified Asterisk 13.13 before 13.13-cert3 because of a buffer overflow in a CDR user field, related to X-ClientCode in chan_sip, the CDR dialplan function, and the AMI Monitor action.

EPSS

Процентиль: 96%
0.22039
Средний