Computer Security
[EN] securityvulns.ru
no-pyccku



See also
  ASTERISK : AsteriskNOW 1.0
  ASTERISK : Asterisk 1,4
  ASTERISK : Asterisk s800i
  ASTERISK : Asterisk Appliance Developer Kit 0.4
  ASTERISK : Asterisk 1.3
  ASTERISK : Asterisk 1.4
  ASTERISK : Asterisk@Home 2.6
  ASTERISK : Asterisk 2.0
  ASTERISK : Asterisk 1.5
  ASTERISK : Asterisk 1.2
Name:ASTERISK : Asterisk 1.6

 Asterisk invalid ACL processing
document /0 CIDR in ACL is processed in unpredictable way.
 Asterisk dialplan modification
document Atacker can control dialplan if ${EXTEN} macro is used.
 Asterisk integer overflow
document Integer overflow on T.38 over SIP FaxMaxDatagram field parsing.
 Asterisk RTP DoS
document Crash on RTP comfort noise payload processing.
 Asterisk multiple security vulnerabilities
document Information leak, crossite scripting.
 Asterisk protection bypass
document ACL restrictions were not applied to SIP INVITE messages.
 Asterisk IAX2 DoS
document 15-bit call number resource exhaustion.
6!Asterisk SIP DoS
updated since 11.08.2009
document Stack overlow (exhaustion) on SIP request processing.
 Asterisk DoS
document Crash on RTP text frames processing.
 Asterisk VoIP server user accounts enumeration
document Different replies for non-exstant SIP account and invalid password.
 Asterisk VoIP server DoS
document NULL pointer dereference on empty SIP INVITE header.
 Asterisk user account enumeration
document Different replies for invalid username and password in IAX2 authentication.
 Asterisk voice server DoS
document Crash on IAX2 processing
8!Asterisk multiple security vulnerabilities
updated since 19.03.2008
document Multiple format string vulnerabilities, buffer overflow on RTP handling, HTTP interface sessions spoofing, unauthorized SIP calls.
                    

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod
 



Rating@Mail.ru