LWN.net Logo

asterisk: denial of service

Package(s):asterisk CVE #(s):CVE-2012-0885
Created:February 23, 2012 Updated:February 29, 2012
Description:

From the Gentoo advisory:

A vulnerability has been found in Asterisk's handling of certain encrypted streams where the res_srtp module has been loaded but video support has not been enabled.

A remote attacker could send a specially crafted SDP message to the Asterisk daemon, possibly resulting in a Denial of Service condition.

Alerts:
Gentoo 201202-06 2012-02-22

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds