LWN.net Logo

asterisk: denial of service

Package(s):asterisk CVE #(s):CVE-2012-2948
Created:June 13, 2012 Updated:June 13, 2012
Description: From the CVE entry:

chan_skinny.c in the Skinny (aka SCCP) channel driver in Certified Asterisk 1.8.11-cert before 1.8.11-cert2 and Asterisk Open Source 1.8.x before 1.8.12.1 and 10.x before 10.4.1 allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) by closing a connection in off-hook mode.

Alerts:
Debian DSA-2493-1 2012-06-12
Gentoo 201206-05 2012-06-20

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds