Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-2488

Опубликовано: 07 мая 2007
Источник: nvd
CVSS2: 10
EPSS Низкий

Описание

The IAX2 channel driver (chan_iax2) in Asterisk before 20070504 does not properly null terminate data, which allows remote attackers to trigger loss of transmitted data, and possibly obtain sensitive information (memory contents) or cause a denial of service (application crash), by sending a frame that lacks a 0 byte.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:asterisk:asterisk:*:*:*:*:*:*:*:*
Версия до 1.4.4_2007-04-27 (включая)

EPSS

Процентиль: 86%
0.0307
Низкий

10 Critical

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
больше 18 лет назад

The IAX2 channel driver (chan_iax2) in Asterisk before 20070504 does not properly null terminate data, which allows remote attackers to trigger loss of transmitted data, and possibly obtain sensitive information (memory contents) or cause a denial of service (application crash), by sending a frame that lacks a 0 byte.

debian
больше 18 лет назад

The IAX2 channel driver (chan_iax2) in Asterisk before 20070504 does n ...

github
больше 3 лет назад

The IAX2 channel driver (chan_iax2) in Asterisk before 20070504 does not properly null terminate data, which allows remote attackers to trigger loss of transmitted data, and possibly obtain sensitive information (memory contents) or cause a denial of service (application crash), by sending a frame that lacks a 0 byte.

EPSS

Процентиль: 86%
0.0307
Низкий

10 Critical

CVSS2

Дефекты

NVD-CWE-Other