Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-3764

Опубликовано: 18 июл. 2007
Источник: nvd
CVSS2: 5
EPSS Средний

Описание

The Skinny channel driver (chan_skinny) in Asterisk before 1.2.22 and 1.4.x before 1.4.8, Business Edition before B.2.2.1, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial of service (crash) via a certain data length value in a crafted packet, which results in an "overly large memcpy."

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:asterisk:asterisk:1.0:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.0.6:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.0.7:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.0.8:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.0.9:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.0.10:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.0.11:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.0.12:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.0_beta1:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.0_beta2:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.5:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.6:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.7:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.8:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.9:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.10:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.11:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.12:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.13:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.14:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.15:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.16:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.17:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4.1:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4.2:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4.4_2007-04-27:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4_beta:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:a:*:business:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:b.1.3.2:*:business:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:b.1.3.3:*:business:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:b.2.2.0:*:business:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk_appliance_developer_kit:*:*:*:*:*:*:*:*
Версия до 0.4 (включая)
cpe:2.3:a:asterisk:asterisknow:beta_5:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisknow:beta_6:*:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:h:asterisk:s800i_appliance:1.0:*:*:*:*:*:*:*
cpe:2.3:h:asterisk:s800i_appliance:1.0.1:*:*:*:*:*:*:*

EPSS

Процентиль: 97%
0.44755
Средний

5 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
больше 18 лет назад

The Skinny channel driver (chan_skinny) in Asterisk before 1.2.22 and 1.4.x before 1.4.8, Business Edition before B.2.2.1, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial of service (crash) via a certain data length value in a crafted packet, which results in an "overly large memcpy."

debian
больше 18 лет назад

The Skinny channel driver (chan_skinny) in Asterisk before 1.2.22 and ...

github
больше 3 лет назад

The Skinny channel driver (chan_skinny) in Asterisk before 1.2.22 and 1.4.x before 1.4.8, Business Edition before B.2.2.1, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial of service (crash) via a certain data length value in a crafted packet, which results in an "overly large memcpy."

EPSS

Процентиль: 97%
0.44755
Средний

5 Medium

CVSS2

Дефекты

NVD-CWE-Other