4

CVE-2014-6610

Asterisk Open Source 11.x before 11.12.1 and 12.x before 12.5.1 and Certified Asterisk 11.6 before 11.6-cert6, when using the res_fax_spandsp module, allows remote authenticated users to cause a denial of service (crash) via an out of call message, which is not properly handled in the ReceiveFax dialplan application.

Data is provided by the National Vulnerability Database (NVD)
DigiumCertified Asterisk Version11.6 Updatecert1 SwEditionlts
DigiumCertified Asterisk Version11.6 Updatecert2 SwEditionlts
DigiumCertified Asterisk Version11.6 Updatecert3 SwEditionlts
DigiumCertified Asterisk Version11.6 Updatecert4 SwEditionlts
DigiumCertified Asterisk Version11.6 Updatecert5 SwEditionlts
DigiumCertified Asterisk Version11.6.0 SwEditionlts
DigiumAsterisk Version11.0.0
DigiumAsterisk Version11.0.0 Updatebeta1
DigiumAsterisk Version11.0.0 Updatebeta2
DigiumAsterisk Version11.0.0 Updaterc1
DigiumAsterisk Version11.0.0 Updaterc2
DigiumAsterisk Version11.1.0
DigiumAsterisk Version11.1.0 Updaterc1
DigiumAsterisk Version11.1.0 Updaterc2
DigiumAsterisk Version11.1.0 Updaterc3
DigiumAsterisk Version11.2.0
DigiumAsterisk Version11.2.0 Updaterc1
DigiumAsterisk Version11.2.0 Updaterc2
DigiumAsterisk Version11.3.0 Updaterc1
DigiumAsterisk Version11.3.0 Updaterc2
DigiumAsterisk Version11.4.0
DigiumAsterisk Version11.4.0 Updaterc1
DigiumAsterisk Version11.4.0 Updaterc2
DigiumAsterisk Version11.4.0 Updaterc3
DigiumAsterisk Version11.4.0 Updaterc4
DigiumAsterisk Version11.5.0
DigiumAsterisk Version11.5.0 Updaterc1
DigiumAsterisk Version11.5.0 Updaterc2
DigiumAsterisk Version11.6.0
DigiumAsterisk Version11.6.0 Updaterc1
DigiumAsterisk Version11.6.0 Updaterc2
DigiumAsterisk Version11.7.0
DigiumAsterisk Version11.7.0 Updaterc1
DigiumAsterisk Version11.7.0 Updaterc2
DigiumAsterisk Version11.8.0
DigiumAsterisk Version11.8.0 Updaterc1
DigiumAsterisk Version11.8.0 Updaterc2
DigiumAsterisk Version11.8.0 Updaterc3
DigiumAsterisk Version11.9.0
DigiumAsterisk Version11.9.0 Updaterc1
DigiumAsterisk Version11.9.0 Updaterc2
DigiumAsterisk Version11.9.0 Updaterc3
DigiumAsterisk Version11.10.0
DigiumAsterisk Version11.10.0 Updaterc1
DigiumAsterisk Version11.11.0
DigiumAsterisk Version11.11.0 Updaterc1
DigiumAsterisk Version11.12.0
DigiumAsterisk Version12.0.0
DigiumAsterisk Version12.1.0
DigiumAsterisk Version12.1.0 Updaterc1
DigiumAsterisk Version12.1.0 Updaterc2
DigiumAsterisk Version12.1.0 Updaterc3
DigiumAsterisk Version12.2.0
DigiumAsterisk Version12.2.0 Updaterc1
DigiumAsterisk Version12.2.0 Updaterc2
DigiumAsterisk Version12.2.0 Updaterc3
DigiumAsterisk Version12.3.0
DigiumAsterisk Version12.3.0 Updaterc1
DigiumAsterisk Version12.3.0 Updaterc2
DigiumAsterisk Version12.4.0
DigiumAsterisk Version12.4.0 Updaterc1
DigiumAsterisk Version12.5.0
DigiumAsterisk Version12.5.0 Updaterc1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.52% 0.807
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4 8 2.9
AV:N/AC:L/Au:S/C:N/I:N/A:P