Stack-based buffer overflow in channels/chan_mgcp.c in MGCP in Asterisk 1.0 through 1.2.10 allows remote attackers to execute arbitrary code via a crafted audit endpoint (AUEP) response.
Link | Tags |
---|---|
http://www.vupen.com/english/advisories/2006/3372 | vdb entry |
http://www.gentoo.org/security/en/glsa/glsa-200610-15.xml | vendor advisory |
http://labs.musecurity.com/advisories/MU-200608-01.txt | patch vendor advisory |
http://secunia.com/advisories/22651 | third party advisory |
http://www.securityfocus.com/bid/19683 | vdb entry patch |
http://securitytracker.com/id?1016742 | vdb entry patch |
http://www.securityfocus.com/archive/1/444322/100/0/threaded | mailing list |
http://ftp.digium.com/pub/asterisk/ChangeLog-1.2.11 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/28542 | vdb entry |
http://www.sineapps.com/news.php?rssid=1448 | |
http://secunia.com/advisories/21600 | third party advisory patch vendor advisory |