|
|
| |
|
| |
asterisk: multiple vulnerabilities
| Package(s): | asterisk |
CVE #(s): | CVE-2011-4597
CVE-2011-4598
|
| Created: | December 19, 2011 |
Updated: | December 21, 2011 |
| Description: |
From the Debian advisory:
CVE-2011-4597:
Ben Williams discovered that it was possible to enumerate SIP
user names in some configurations.
CVE-2011-4598:
Kristijan Vrban discovered that Asterisk can be crashed with
malformed SIP packets if the "automon" feature is enabled. |
| Alerts: |
|
( Log in to post comments)
|
|
|