Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-3765

Опубликовано: 18 июл. 2007
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

The STUN implementation in Asterisk 1.4.x before 1.4.8, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial of service (crash) via a crafted STUN length attribute in a STUN packet sent on an RTP port.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:asterisk:asterisk:1.0:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.0.6:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.0.7:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.0.8:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.0.9:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.0.10:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.0.11:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.0.12:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.0_beta1:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.0_beta2:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.5:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.6:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.7:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.8:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.9:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.10:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.11:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.12:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.13:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.14:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.15:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.16:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.17:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4.1:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4.2:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4.4_2007-04-27:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4_beta:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:a:*:business:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:b.1.3.2:*:business:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:b.1.3.3:*:business:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:b.2.2.0:*:business:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk_appliance_developer_kit:*:*:*:*:*:*:*:*
Версия до 0.4 (включая)
cpe:2.3:a:asterisk:asterisknow:beta_5:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisknow:beta_6:*:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:h:asterisk:s800i_appliance:1.0:*:*:*:*:*:*:*
cpe:2.3:h:asterisk:s800i_appliance:1.0.1:*:*:*:*:*:*:*

EPSS

Процентиль: 74%
0.00836
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
около 18 лет назад

The STUN implementation in Asterisk 1.4.x before 1.4.8, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial of service (crash) via a crafted STUN length attribute in a STUN packet sent on an RTP port.

debian
около 18 лет назад

The STUN implementation in Asterisk 1.4.x before 1.4.8, AsteriskNOW be ...

github
больше 3 лет назад

The STUN implementation in Asterisk 1.4.x before 1.4.8, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial of service (crash) via a crafted STUN length attribute in a STUN packet sent on an RTP port.

EPSS

Процентиль: 74%
0.00836
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other