4

CVE-2012-3553

chan_skinny.c in the Skinny (aka SCCP) channel driver in Asterisk Open Source 10.x before 10.5.1 allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) by sending a Station Key Pad Button message and closing a connection in off-hook mode, a related issue to CVE-2012-2948.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
DigiumAsterisk Version10.0.0
DigiumAsterisk Version10.0.0 Updatebeta1
DigiumAsterisk Version10.0.0 Updatebeta2
DigiumAsterisk Version10.0.0 Updaterc1
DigiumAsterisk Version10.0.0 Updaterc2
DigiumAsterisk Version10.0.0 Updaterc3
DigiumAsterisk Version10.0.1
DigiumAsterisk Version10.1.0
DigiumAsterisk Version10.1.0 Updaterc1
DigiumAsterisk Version10.1.0 Updaterc2
DigiumAsterisk Version10.1.1
DigiumAsterisk Version10.1.2
DigiumAsterisk Version10.1.3
DigiumAsterisk Version10.2.0
DigiumAsterisk Version10.2.0 Updaterc1
DigiumAsterisk Version10.2.0 Updaterc2
DigiumAsterisk Version10.2.0 Updaterc3
DigiumAsterisk Version10.2.0 Updaterc4
DigiumAsterisk Version10.2.1
DigiumAsterisk Version10.3.0
DigiumAsterisk Version10.3.0 Updaterc2
DigiumAsterisk Version10.3.0 Updaterc3
DigiumAsterisk Version10.3.1
DigiumAsterisk Version10.4.0
DigiumAsterisk Version10.4.0 Updaterc1
DigiumAsterisk Version10.4.0 Updaterc2
DigiumAsterisk Version10.4.0 Updaterc3
DigiumAsterisk Version10.4.1
DigiumAsterisk Version10.4.2
DigiumAsterisk Version10.5.0
DigiumAsterisk Version10.5.0 Updaterc1
DigiumAsterisk Version10.5.0 Updaterc2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.07% 0.18
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4 8 2.9
AV:N/AC:L/Au:S/C:N/I:N/A:P