5
CVSSv2

CVE-2011-1174

Published: 31/03/2011 Updated: 17/08/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

manager.c in Asterisk Open Source 1.6.1.x prior to 1.6.1.24, 1.6.2.x prior to 1.6.2.17.2, and 1.8.x prior to 1.8.3.2 allows remote malicious users to cause a denial of service (CPU and memory consumption) via a series of manager sessions involving invalid data.

Vulnerable Product Search on Vulmon Subscribe to Product

digium asterisk 1.6.1.20

digium asterisk 1.6.1.19

digium asterisk 1.6.1.10

digium asterisk 1.6.1

digium asterisk 1.6.1.6

digium asterisk 1.6.1.7

digium asterisk 1.6.1.21

digium asterisk 1.6.1.1

digium asterisk 1.6.1.5

digium asterisk 1.6.1.9

digium asterisk 1.6.1.17

digium asterisk 1.6.1.13

digium asterisk 1.6.1.0

digium asterisk 1.6.1.16

digium asterisk 1.6.1.18

digium asterisk 1.6.1.12

digium asterisk 1.6.1.15

digium asterisk 1.6.1.23

digium asterisk 1.6.1.22

digium asterisk 1.6.1.3

digium asterisk 1.6.1.4

digium asterisk 1.6.1.8

digium asterisk 1.6.1.11

digium asterisk 1.6.1.2

digium asterisk 1.6.1.14

digium asterisk 1.6.2.0

digium asterisk 1.6.2.1

digium asterisk 1.6.2.2

digium asterisk 1.6.2.16.1

digium asterisk 1.6.2.17

digium asterisk 1.6.2.16

digium asterisk 1.6.2.3

digium asterisk 1.6.2.4

digium asterisk 1.6.2.15

digium asterisk 1.6.2.6

digium asterisk 1.6.2.5

digium asterisk 1.6.2.17.1

digium asterisk 1.8.1

digium asterisk 1.8.0

digium asterisk 1.8.3

digium asterisk 1.8.1.2

digium asterisk 1.8.1.1

digium asterisk 1.8.2.1

digium asterisk 1.8.2

digium asterisk 1.8.2.3

digium asterisk 1.8.2.2

digium asterisk 1.8.3.1

Vendor Advisories

Several vulnerabilities have been discovered in Asterisk, an Open Source PBX and telephony toolkit CVE-2011-1147 Matthew Nicholson discovered that incorrect handling of UDPTL packets may lead to denial of service or the execution of arbitrary code CVE-2011-1174 Blake Cornell discovered that incorrect connection handling in the manage ...