CVE-2007-2297

The SIP channel driver (chan_sip) in Asterisk before 1.2.18 and 1.4.x before 1.4.3 does not properly parse SIP UDP packets that do not contain a valid response code, which allows remote attackers to cause a denial of service (crash).
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:asterisk:asterisk:1.2.0_beta1:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.0_beta2:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.10:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.11:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.12:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.13:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.14:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.15:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.16:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.2.17:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4.1:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4.2:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4_beta:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-04-26 20:19

Updated : 2024-02-28 11:01


NVD link : CVE-2007-2297

Mitre link : CVE-2007-2297

CVE.ORG link : CVE-2007-2297


JSON object : View

Products Affected

asterisk

  • asterisk