Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Gentoo: GLSA-202301-12 Critical: Asterisk SIP Channel Exploit Alert

gentoo
Calendar Grey June 14, 2006
Dist Gentoo Esm H88
A critical vulnerability in Asterisk affects Gentoo Linux deployments, allowing unauthorized access. Update to the latest versions to mitigate risk.
Asterisk contains a bug in the IAX2 channel driver making it vulnerable to the remote execution of arbitrary code.

Summary

Gentoo Linux Security Advisory GLSA 200606-15 https://security.gentoo.org/ Severity: High Title: Asterisk: IAX2 video frame buffer overflow Date: June 14, 2006 Bugs: #135680 ID: 200606-15

Synopsis ======= Asterisk contains a bug in the IAX2 channel driver making it vulnerable to the remote execution of arbitrary code.
Background ========= Asterisk is an open source implementation of a telephone private branch exchange (PBX).
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-misc/asterisk < 1.0.11_p1 >= 1.0.11_p1
========== Asterisk fails to properly check the length of truncated video frames in the IAX2 channel driver which results in a buffer overflow.
Impact...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here