asterisk: multiple vulnerabilities
| Package(s): | asterisk | CVE #(s): | CVE-2011-4597 CVE-2011-4598 | ||||||||
| Created: | December 19, 2011 | Updated: | December 21, 2011 | ||||||||
| Description: | From the Debian advisory:
CVE-2011-4597: Ben Williams discovered that it was possible to enumerate SIP user names in some configurations. CVE-2011-4598: Kristijan Vrban discovered that Asterisk can be crashed with malformed SIP packets if the "automon" feature is enabled. | ||||||||||
| Alerts: |
| ||||||||||
