|
|
| |
|
| |
asterisk: code execution
| Package(s): | asterisk |
CVE #(s): | CVE-2012-1183
CVE-2012-1184
|
| Created: | March 28, 2012 |
Updated: | May 4, 2012 |
| Description: |
The asterisk telephony system prior to version 1.8.10.1 suffers from a stack overrun in milliwatt_generate() and a buffer overflow vulnerability in ast_parse_digest(). Either could be exploited to execute arbitrary code. |
| Alerts: |
|
( Log in to post comments)
|
|
|