Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-2488

Опубликовано: 07 мая 2007
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 10

Описание

The IAX2 channel driver (chan_iax2) in Asterisk before 20070504 does not properly null terminate data, which allows remote attackers to trigger loss of transmitted data, and possibly obtain sensitive information (memory contents) or cause a denial of service (application crash), by sending a frame that lacks a 0 byte.

РелизСтатусПримечание
dapper

ignored

end of life
devel

released

1.4.11~dfsg-1
edgy

ignored

end of life, was needed
feisty

ignored

end of life, was needed
gutsy

released

1.4.11~dfsg-1
hardy

released

1.4.11~dfsg-1
intrepid

released

1.4.11~dfsg-1
jaunty

released

1.4.11~dfsg-1
karmic

released

1.4.11~dfsg-1
upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 86%
0.0307
Низкий

10 Critical

CVSS2

Связанные уязвимости

nvd
больше 18 лет назад

The IAX2 channel driver (chan_iax2) in Asterisk before 20070504 does not properly null terminate data, which allows remote attackers to trigger loss of transmitted data, and possibly obtain sensitive information (memory contents) or cause a denial of service (application crash), by sending a frame that lacks a 0 byte.

debian
больше 18 лет назад

The IAX2 channel driver (chan_iax2) in Asterisk before 20070504 does n ...

github
больше 3 лет назад

The IAX2 channel driver (chan_iax2) in Asterisk before 20070504 does not properly null terminate data, which allows remote attackers to trigger loss of transmitted data, and possibly obtain sensitive information (memory contents) or cause a denial of service (application crash), by sending a frame that lacks a 0 byte.

EPSS

Процентиль: 86%
0.0307
Низкий

10 Critical

CVSS2