Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-2685

Опубликовано: 01 апр. 2013
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5

Описание

Stack-based buffer overflow in res/res_format_attr_h264.c in Asterisk Open Source 11.x before 11.2.2 allows remote attackers to execute arbitrary code via a long sprop-parameter-sets H.264 media attribute in a SIP Session Description Protocol (SDP) header.

РелизСтатусПримечание
devel

not-affected

1:1.8.13.1~dfsg-1ubuntu2
hardy

not-affected

1:1.4.17~dfsg-2ubuntu1.1
lucid

not-affected

1:1.6.2.5-0ubuntu1.4
oneiric

not-affected

1:1.8.4.4~dfsg-2ubuntu1.1
precise

not-affected

1:1.8.10.1~dfsg-1ubuntu1
quantal

not-affected

1:1.8.13.1~dfsg-1ubuntu2
upstream

released

11.2.2

Показывать по

EPSS

Процентиль: 92%
0.08932
Низкий

7.5 High

CVSS2

Связанные уязвимости

nvd
почти 13 лет назад

Stack-based buffer overflow in res/res_format_attr_h264.c in Asterisk Open Source 11.x before 11.2.2 allows remote attackers to execute arbitrary code via a long sprop-parameter-sets H.264 media attribute in a SIP Session Description Protocol (SDP) header.

debian
почти 13 лет назад

Stack-based buffer overflow in res/res_format_attr_h264.c in Asterisk ...

github
больше 3 лет назад

Stack-based buffer overflow in res/res_format_attr_h264.c in Asterisk Open Source 11.x before 11.2.2 allows remote attackers to execute arbitrary code via a long sprop-parameter-sets H.264 media attribute in a SIP Session Description Protocol (SDP) header.

EPSS

Процентиль: 92%
0.08932
Низкий

7.5 High

CVSS2