Gentoo Linux Security Advisory GLSA 200606-15
https://security.gentoo.org/
Severity: High
Title: Asterisk: IAX2 video frame buffer overflow
Date: June 14, 2006
Bugs: #135680
ID: 200606-15
Synopsis
=======
Asterisk contains a bug in the IAX2 channel driver making it vulnerable
to the remote execution of arbitrary code.
Background
=========
Asterisk is an open source implementation of a telephone private branch
exchange (PBX).
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 net-misc/asterisk < 1.0.11_p1 >= 1.0.11_p1
==========
Asterisk fails to properly check the length of truncated video frames
in the IAX2 channel driver which results in a buffer overflow.
Impact...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.