Search CVE reports


Toggle filters

121 – 130 of 189 results


CVE-2012-2415

Medium priority
Ignored

Heap-based buffer overflow in chan_skinny.c in the Skinny channel driver in Asterisk Open Source 1.6.2.x before 1.6.2.24, 1.8.x before 1.8.11.1, and 10.x before 10.3.1 allows remote authenticated users to cause a denial of service...

1 affected package

asterisk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
asterisk
Show less packages

CVE-2012-2414

Low priority
Ignored

main/manager.c in the Manager Interface in Asterisk Open Source 1.6.2.x before 1.6.2.24, 1.8.x before 1.8.11.1, and 10.x before 10.3.1 and Asterisk Business Edition C.3.x before C.3.7.4 does not properly enforce System class...

1 affected package

asterisk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
asterisk
Show less packages

CVE-2012-0885

Medium priority
Ignored

chan_sip.c in Asterisk Open Source 1.8.x before 1.8.8.2 and 10.x before 10.0.1, when the res_srtp module is used and media support is improperly configured, allows remote attackers to cause a denial of service (NULL pointer...

1 affected package

asterisk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
asterisk
Show less packages

CVE-2011-4598

Medium priority
Ignored

The handle_request_info function in channels/chan_sip.c in Asterisk Open Source 1.6.2.x before 1.6.2.21 and 1.8.x before 1.8.7.2, when automon is enabled, allows remote attackers to cause a denial of service (NULL...

1 affected package

asterisk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
asterisk
Show less packages

CVE-2011-4597

Medium priority
Ignored

The SIP over UDP implementation in Asterisk Open Source 1.4.x before 1.4.43, 1.6.x before 1.6.2.21, and 1.8.x before 1.8.7.2 uses different port numbers for responses to invalid requests depending on whether a SIP username exists,...

1 affected package

asterisk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
asterisk
Show less packages

CVE-2011-4063

Medium priority
Ignored

chan_sip.c in the SIP channel driver in Asterisk Open Source 1.8.x before 1.8.7.1 and 10.x before 10.0.0-rc1 does not properly initialize variables during request parsing, which allows remote authenticated users to cause a denial...

1 affected package

asterisk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
asterisk
Show less packages

CVE-2011-2666

Low priority

Some fixes available 3 of 4

The default configuration of the SIP channel driver in Asterisk Open Source 1.4.x through 1.4.41.2 and 1.6.2.x through 1.6.2.18.2 does not enable the alwaysauthreject option, which allows remote attackers to enumerate...

1 affected package

asterisk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
asterisk
Show less packages

CVE-2011-2665

Medium priority
Ignored

reqresp_parser.c in the SIP channel driver in Asterisk Open Source 1.8.x before 1.8.4.3 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a SIP packet with a Contact header that...

1 affected package

asterisk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
asterisk
Show less packages

CVE-2011-2536

Low priority

Some fixes available 3 of 4

chan_sip.c in the SIP channel driver in Asterisk Open Source 1.4.x before 1.4.41.2, 1.6.2.x before 1.6.2.18.2, and 1.8.x before 1.8.4.4, and Asterisk Business Edition C.3.x before C.3.7.3, disregards the alwaysauthreject option...

1 affected package

asterisk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
asterisk
Show less packages

CVE-2011-2535

Medium priority

Some fixes available 3 of 4

chan_iax2.c in the IAX2 channel driver in Asterisk Open Source 1.4.x before 1.4.41.1, 1.6.2.x before 1.6.2.18.1, and 1.8.x before 1.8.4.3, and Asterisk Business Edition C.3 before C.3.7.3, accesses a memory address contained in an...

1 affected package

asterisk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
asterisk
Show less packages