Computer Security
[EN] securityvulns.ru
no-pyccku



See also
  ASTERISK : AsteriskNOW 1.0
  ASTERISK : Asterisk 1.6
  ASTERISK : Asterisk 1,4
  ASTERISK : Asterisk s800i
  ASTERISK : Asterisk Appliance Developer Kit 0.4
  ASTERISK : Asterisk 1.3
  ASTERISK : Asterisk 1.4
  ASTERISK : Asterisk@Home 2.6
  ASTERISK : Asterisk 2.0
  ASTERISK : Asterisk 1.5
Name:ASTERISK : Asterisk 1.2

 Asterisk invalid ACL processing
document /0 CIDR in ACL is processed in unpredictable way.
 Asterisk dialplan modification
document Atacker can control dialplan if ${EXTEN} macro is used.
 Asterisk RTP DoS
document Crash on RTP comfort noise payload processing.
 Asterisk multiple security vulnerabilities
document Information leak, crossite scripting.
 Asterisk protection bypass
document ACL restrictions were not applied to SIP INVITE messages.
 Asterisk user account enumeration
document Different replies for invalid username and password in IAX2 authentication.
 Asterisk voice server DoS
document Crash on IAX2 processing
 Asterisk multiple security vulnerabilities
document Traffic amplification, DoS with resouurces exhaustion.
 Asterisk voice server DoS
updated since 05.06.2008
document SIP protocol parsing NULL pointer dereference in pedantic mode. Uninitialized memory reference on in ooh323 channel driver.
6!Asterisk IAX2 calls spoofing
document Insuficient check of server ACK and weak call number generation allows blind spoofing.
 Asterisk cdr_addon_mysql SQL injection
document SQL injection with destination number.
 Asterisk VoIP server IAX2 DoS
document NEW requests flood causes resources exhaustion.
7!Asterisk VoIP server multiple security vulnerabilities
document Buffer overflow and DoS on IAX2 implementation, DoS in Skinny and STUN implementation.
7!Asterisk multiple security vulnerabilities
document Multiple buffer overflows on T.38 SDP SIP channels parsing. DoS in administration interface. Multiple security vulnerabilities in parsing SIP replies.
6!Asterisk PBX SIP DoS
updated since 04.03.2007
document Application crash on malcrafted SIP packet.
 Multiple Asterisk security vulnerabilities
document Different malcrafted packets sequences cause service to crash.
7!Asterisk remote buffer overflow
document Buffer overflow on parsing Cisco Skinny VoIP protocol.
6!Asteriks PBX / VoIP solution buffer overflow
document Buffer overflow in MGCP inplementation on AUEP message parsing.
 Asterisk IAX2 VoIP PBX and multiple IAX clients DoS
updated since 07.06.2006
document DoS on IAX2 channel processing.
 Asterisk PBX server voice mail mailbox directory traversal
document Web interface directory traversal allows to download any .wav file.
                    

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod
 



Rating@Mail.ru