Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-1693

Опубликовано: 17 мая 2007
Источник: nvd
CVSS2: 7.8
EPSS Низкий

Описание

The SIP channel module in Yet Another Telephony Engine (Yate) before 1.2.0 sets the caller_info_uri parameter using an incorrect variable that can be NULL, which allows remote attackers to cause a denial of service (NULL dereference and application crash) via a Call-Info header without a purpose parameter.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:yate:yet_another_telephony_engine:*:*:*:*:*:*:*:*
Версия до 1.1.0 (включая)

EPSS

Процентиль: 79%
0.01297
Низкий

7.8 High

CVSS2

Дефекты

CWE-20

Связанные уязвимости

ubuntu
больше 18 лет назад

The SIP channel module in Yet Another Telephony Engine (Yate) before 1.2.0 sets the caller_info_uri parameter using an incorrect variable that can be NULL, which allows remote attackers to cause a denial of service (NULL dereference and application crash) via a Call-Info header without a purpose parameter.

debian
больше 18 лет назад

The SIP channel module in Yet Another Telephony Engine (Yate) before 1 ...

github
больше 3 лет назад

The SIP channel module in Yet Another Telephony Engine (Yate) before 1.2.0 sets the caller_info_uri parameter using an incorrect variable that can be NULL, which allows remote attackers to cause a denial of service (NULL dereference and application crash) via a Call-Info header without a purpose parameter.

EPSS

Процентиль: 79%
0.01297
Низкий

7.8 High

CVSS2

Дефекты

CWE-20