Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-35190

Опубликовано: 17 мая 2024
Источник: debian

Описание

Asterisk is an open source private branch exchange and telephony toolkit. After upgrade to 18.23.0, ALL unauthorized SIP requests are identified as PJSIP Endpoint of local asterisk server. This vulnerability is fixed in 18.23.1, 20.8.1, and 21.3.1.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
asterisknot-affectedpackage

Примечания

  • https://github.com/asterisk/asterisk/security/advisories/GHSA-qqxj-v78h-hrf9

  • https://github.com/asterisk/asterisk/pull/600

  • https://github.com/asterisk/asterisk/pull/602

  • https://github.com/asterisk/asterisk/commit/85241bd22936cc15760fd1f65d16c98be7aeaf6d

Связанные уязвимости

CVSS3: 5.8
ubuntu
больше 1 года назад

Asterisk is an open source private branch exchange and telephony toolkit. After upgrade to 18.23.0, ALL unauthorized SIP requests are identified as PJSIP Endpoint of local asterisk server. This vulnerability is fixed in 18.23.1, 20.8.1, and 21.3.1.

CVSS3: 5.8
nvd
больше 1 года назад

Asterisk is an open source private branch exchange and telephony toolkit. After upgrade to 18.23.0, ALL unauthorized SIP requests are identified as PJSIP Endpoint of local asterisk server. This vulnerability is fixed in 18.23.1, 20.8.1, and 21.3.1.