5
CVSSv2

CVE-2008-2543

Published: 05/06/2008 Updated: 15/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The ooh323 channel driver in Asterisk Addons 1.2.x prior to 1.2.9 and Asterisk-Addons 1.4.x prior to 1.4.7 creates a remotely accessible TCP port that is intended solely for localhost communication, and interprets some TCP application-data fields as addresses of memory to free, which allows remote malicious users to cause a denial of service (daemon crash) via crafted TCP packets.

Vulnerable Product Search on Vulmon Subscribe to Product

asterisk asterisk-addons 1.2.7

asterisk asterisk-addons 1.2.5

asterisk asterisk-addons 1.2.6

asterisk asterisk-addons 1.4.4

asterisk asterisk-addons 1.4.6

asterisk asterisk-addons 1.2.8

asterisk asterisk-addons 1.2.0

asterisk asterisk-addons 1.4.2

asterisk asterisk-addons 1.2.4

asterisk asterisk-addons 1.2.1

asterisk asterisk-addons 1.4.3

asterisk asterisk-addons 1.4.5

asterisk asterisk-addons 1.4.0

asterisk asterisk-addons 1.2.3

asterisk asterisk-addons 1.2.2

asterisk asterisk-addons 1.4.1