Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-2297

Опубликовано: 26 апр. 2007
Источник: nvd
CVSS2: 7.8
EPSS Низкий

Описание

The SIP channel driver (chan_sip) in Asterisk before 1.2.18 and 1.4.x before 1.4.3 does not properly parse SIP UDP packets that do not contain a valid response code, which allows remote attackers to cause a denial of service (crash).

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:asterisk:asterisk:1.2.0_beta1:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.0_beta2:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.10:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.11:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.12:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.13:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.14:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.15:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.16:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.17:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4.1:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4.2:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4_beta:*:*:*:*:*:*:*

EPSS

Процентиль: 83%
0.02019
Низкий

7.8 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
больше 18 лет назад

The SIP channel driver (chan_sip) in Asterisk before 1.2.18 and 1.4.x before 1.4.3 does not properly parse SIP UDP packets that do not contain a valid response code, which allows remote attackers to cause a denial of service (crash).

debian
больше 18 лет назад

The SIP channel driver (chan_sip) in Asterisk before 1.2.18 and 1.4.x ...

github
больше 3 лет назад

The SIP channel driver (chan_sip) in Asterisk before 1.2.18 and 1.4.x before 1.4.3 does not properly parse SIP UDP packets that do not contain a valid response code, which allows remote attackers to cause a denial of service (crash).

EPSS

Процентиль: 83%
0.02019
Низкий

7.8 High

CVSS2

Дефекты

NVD-CWE-Other