|
|
| |
|
| |
asterisk: remote denial of service
| Package(s): | asterisk |
CVE #(s): | CVE-2009-2651
|
| Created: | September 28, 2009 |
Updated: | September 30, 2009 |
| Description: |
From the Red Hat bugzilla entry:
main/rtp.c in Asterisk Open Source 1.6.1 before 1.6.1.2 allows remote
attackers to cause a denial of service (crash) via an RTP text frame
without a certain delimiter, which triggers a NULL pointer dereference
and the subsequent calculation of an invalid pointer.
|
| Alerts: |
|
( Log in to post comments)
|
|
|