Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-42705

Опубликовано: 05 дек. 2022
Источник: debian
EPSS Низкий

Описание

A use-after-free in res_pjsip_pubsub.c in Sangoma Asterisk 16.28, 18.14, 19.6, and certified/18.9-cert2 may allow a remote authenticated attacker to crash Asterisk (denial of service) by performing activity on a subscription via a reliable transport at the same time that Asterisk is also performing activity on that subscription.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
asteriskfixed1:20.0.1~dfsg+~cs6.12.40431414-1package

Примечания

  • https://issues.asterisk.org/jira/browse/ASTERISK-30244

  • https://downloads.asterisk.org/pub/security/AST-2022-008.html

  • https://git.asterisk.org/gitweb/?p=asterisk/asterisk.git;a=commit;h=7684c9e907fb85f5c58b025d9e385ad2600f12a2

EPSS

Процентиль: 80%
0.01322
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 3 лет назад

A use-after-free in res_pjsip_pubsub.c in Sangoma Asterisk 16.28, 18.14, 19.6, and certified/18.9-cert2 may allow a remote authenticated attacker to crash Asterisk (denial of service) by performing activity on a subscription via a reliable transport at the same time that Asterisk is also performing activity on that subscription.

CVSS3: 6.5
nvd
около 3 лет назад

A use-after-free in res_pjsip_pubsub.c in Sangoma Asterisk 16.28, 18.14, 19.6, and certified/18.9-cert2 may allow a remote authenticated attacker to crash Asterisk (denial of service) by performing activity on a subscription via a reliable transport at the same time that Asterisk is also performing activity on that subscription.

CVSS3: 6.5
github
около 3 лет назад

A use-after-free in res_pjsip_pubsub.c in Sangoma Asterisk 16.28, 18.14, 19.6, and certified/18.9-cert2 may allow a remote authenticated attacker to crash Asterisk (denial of service) by performing activity on a subscription via a reliable transport at the same time that Asterisk is also performing activity on that subscription.

EPSS

Процентиль: 80%
0.01322
Низкий