Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-7617

Опубликовано: 10 апр. 2017
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 6.5
CVSS3: 8.8

Описание

Remote code execution can occur in Asterisk Open Source 13.x before 13.14.1 and 14.x before 14.3.1 and Certified Asterisk 13.13 before 13.13-cert3 because of a buffer overflow in a CDR user field, related to X-ClientCode in chan_sip, the CDR dialplan function, and the AMI Monitor action.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

1:13.18.3~dfsg-1ubuntu4
cosmic

not-affected

1:13.18.3~dfsg-1ubuntu4
devel

not-affected

1:13.18.3~dfsg-1ubuntu4
disco

not-affected

1:13.18.3~dfsg-1ubuntu4
eoan

not-affected

1:13.18.3~dfsg-1ubuntu4
esm-apps/bionic

not-affected

1:13.18.3~dfsg-1ubuntu4
esm-apps/focal

not-affected

1:13.18.3~dfsg-1ubuntu4
esm-apps/jammy

not-affected

1:13.18.3~dfsg-1ubuntu4
esm-apps/xenial

released

1:13.1.0~dfsg-1.1ubuntu4.1+esm1

Показывать по

EPSS

Процентиль: 96%
0.22039
Средний

6.5 Medium

CVSS2

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
nvd
почти 9 лет назад

Remote code execution can occur in Asterisk Open Source 13.x before 13.14.1 and 14.x before 14.3.1 and Certified Asterisk 13.13 before 13.13-cert3 because of a buffer overflow in a CDR user field, related to X-ClientCode in chan_sip, the CDR dialplan function, and the AMI Monitor action.

CVSS3: 8.8
debian
почти 9 лет назад

Remote code execution can occur in Asterisk Open Source 13.x before 13 ...

CVSS3: 8.8
github
больше 3 лет назад

Remote code execution can occur in Asterisk Open Source 13.x before 13.14.1 and 14.x before 14.3.1 and Certified Asterisk 13.13 before 13.13-cert3 because of a buffer overflow in a CDR user field, related to X-ClientCode in chan_sip, the CDR dialplan function, and the AMI Monitor action.

EPSS

Процентиль: 96%
0.22039
Средний

6.5 Medium

CVSS2

8.8 High

CVSS3