Computer Security
[EN] securityvulns.ru
no-pyccku



See also
  ASTERISK : AsteriskNOW 1.0
  ASTERISK : Asterisk 1.6
  ASTERISK : Asterisk 1,4
  ASTERISK : Asterisk s800i
  ASTERISK : Asterisk Appliance Developer Kit 0.4
  ASTERISK : Asterisk 1.3
  ASTERISK : Asterisk@Home 2.6
  ASTERISK : Asterisk 2.0
  ASTERISK : Asterisk 1.5
  ASTERISK : Asterisk 1.2
Name:ASTERISK : Asterisk 1.4

 Asterisk multiple security vulnerabilities
document Traffic amplification, DoS with resouurces exhaustion.
6!Asterisk IAX2 calls spoofing
document Insuficient check of server ACK and weak call number generation allows blind spoofing.
 Asterisk SIP Also transfer DoS
document NULL pointer dereference on BYE message parsing.
6!Asterisk unauthorized access
document IP restriction is not checked for users with no password configured.
 Asterisk multiple security vulnerabilities
document cdr_pgsql and res_config_pgsql SQL injection.
 Asterisk cdr_addon_mysql SQL injection
document SQL injection with destination number.
6!Asterisk malformed MIME boundary multiple buffer overflows and DoS
updated since 27.08.2007
document Multiple buffer overflows and crash on malformed MIME boundary if IMAP storage is used for Voicemail.
 Asterisk VoIP server Skinny protocol resources aexhaustions
document SIP dialog history is stored in memory regardless of settings, leading to memory exhaustion.
 Asterisk Skinny (SIP) VoIP protocol DoS
document CAPABILITIES_RES_MESSAGE integer array overflow.
 Asterisk VoIP server IAX2 DoS
document NEW requests flood causes resources exhaustion.
7!Asterisk VoIP server multiple security vulnerabilities
document Buffer overflow and DoS on IAX2 implementation, DoS in Skinny and STUN implementation.
7!Asterisk VoIP server buffer overflow
document Multiple buffer overflows if T38 fax over SIP is enabled.
7!Asterisk multiple security vulnerabilities
document Multiple buffer overflows on T.38 SDP SIP channels parsing. DoS in administration interface. Multiple security vulnerabilities in parsing SIP replies.
6!Asterisk PBX SIP DoS
updated since 04.03.2007
document Application crash on malcrafted SIP packet.
                    

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru