7.1
CVSSv2

CVE-2008-1923

Published: 23/04/2008 Updated: 08/08/2017
CVSS v2 Base Score: 7.1 | Impact Score: 6.9 | Exploitability Score: 8.6
VMScore: 632
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C

Vulnerability Summary

The IAX2 channel driver (chan_iax2) in Asterisk 1.2 before revision 72630 and 1.4 before revision 65679, when configured to allow unauthenticated calls, sends "early audio" to an unverified source IP address of a NEW message, which allows remote malicious users to cause a denial of service (traffic amplification) via a spoofed NEW message.

Vulnerable Product Search on Vulmon Subscribe to Product

asterisk asterisk business edition b.1.3.2

asterisk asterisk business edition b.1.3.3

asterisk asterisk business edition c.1.0-beta7

asterisk asterisk business edition c.1.0-beta8

asterisk open source 1.0.1

asterisk open source 1.0.11

asterisk open source 1.0.6

asterisk open source 1.0.7

asterisk open source 1.2.11

asterisk open source 1.2.12

asterisk open source 1.2.15

asterisk open source 1.2.19

asterisk open source 1.2.22

asterisk open source 1.2.26

asterisk open source 1.2.26.1

asterisk open source 1.2.3

asterisk open source 1.2.4

asterisk open source 1.2.7.1

asterisk open source 1.4.0

asterisk open source 1.4.12.1

asterisk open source 1.4.13

asterisk open source 1.4.18

asterisk open source 1.4.18.1

asterisk open source 1.4.4

asterisk open source 1.4.5

asterisk s800i 1.0.2

asterisk s800i 1.0.3

asterisk s800i

asterisk asterisk business edition b.2.2.0

asterisk asterisk business edition b.2.2.1

asterisk asterisk business edition c.1.0beta7

asterisk asterisk business edition c.1.6.1

asterisk open source 1.0.11.1

asterisk open source 1.0.12

asterisk open source 1.0.8

asterisk open source 1.0.9

asterisk open source 1.2.0

asterisk open source 1.2.12.1

asterisk open source 1.2.16

asterisk open source 1.2.2

asterisk open source 1.2.20

asterisk open source 1.2.23

asterisk open source 1.2.26.2

asterisk open source 1.2.5

asterisk open source 1.2.7

asterisk open source 1.2.8

asterisk open source 1.4.14

asterisk open source 1.4.15

asterisk open source 1.4.19

asterisk open source 1.4.6

asterisk open source 1.4.7

asterisk s800i 1.0.3.3

asterisk s800i 1.1.0

asterisk asterisk business edition b.2.3.1

asterisk asterisk business edition b.2.3.2

asterisk asterisk business edition b.2.3.3

asterisk asterisknow 1.0

asterisk asterisknow 1.0.1

asterisk open source 1.0.2

asterisk open source 1.0.3

asterisk open source 1.2.1

asterisk open source 1.2.10

asterisk open source 1.2.13

asterisk open source 1.2.17

asterisk open source 1.2.21

asterisk open source 1.2.21.1

asterisk open source 1.2.24

asterisk open source 1.2.6

asterisk open source 1.2.9

asterisk open source 1.4.1

asterisk open source 1.4.10

asterisk open source 1.4.16

asterisk open source 1.4.16.1

asterisk open source 1.4.7.1

asterisk open source 1.4.8

asterisk open source 1.4.9

asterisk s800i 1.1.0.1

asterisk asterisk business edition

asterisk asterisk appliance developer kit

asterisk asterisk business edition a

asterisk asterisk business edition b.2.3.4

asterisk asterisk business edition b.2.5.0

asterisk open source 1.0

asterisk open source 1.0.0

asterisk open source 1.0.4

asterisk open source 1.0.5

asterisk open source 1.2.14

asterisk open source 1.2.18

asterisk open source 1.2.25

asterisk open source 1.2.27

asterisk open source 1.2.28

asterisk open source 1.2.9.1

asterisk open source 1.4.10.1

asterisk open source 1.4.11

asterisk open source 1.4.12

asterisk open source 1.4.16.2

asterisk open source 1.4.17

asterisk open source 1.4.2

asterisk open source 1.4.3

asterisk s800i 1.0

asterisk s800i 1.0.1

asterisk asterisknow