← Back

CVE-2008-2119

nvd nist
Published: Jun 4, 2008Modified: Apr 23, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:N/I:N/A:P
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

Asterisk Open Source 1.0.x and 1.2.x before 1.2.29 and Business Edition A.x.x and B.x.x before B.2.5.3, when pedantic parsing (aka pedanticsipchecking) is enabled, allows remote attackers to cause a denial of service (daemon crash) via a SIP INVITE message that lacks a From header, related to invocations of the ast_uri_decode function, and improper handling of (1) an empty const string and (2) a NULL pointer.

Affected (53)

2 products
Asterisk Business Edition
Open Source
Configuration A
53 vulnerable
Vulnerable SoftwareAffected Versions
Asterisk
Up to b2.5.2
Version b.1.3.2
Version b.1.3.3
Version b.2.2.0
Version b.2.2.1
Version b.2.3.1
Version b.2.3.2
Version b.2.3.3
Version b.2.3.4
Version b.2.5.0
Version b2.5.1
Asterisk
Up to 1.2.28
Version 1.0.0
Version 1.0.11.1
Version 1.0.11
Version 1.0.12
Version 1.0.1
Version 1.0.2
Version 1.0.3
Version 1.0.4
Version 1.0.5
Version 1.0.6
Version 1.0.7
Version 1.0.8
Version 1.0.9
Version 1.0
Version 1.2.0
Version 1.2.0beta1
Version 1.2.0beta2
Version 1.2.10
Version 1.2.11
Version 1.2.12.1
Version 1.2.12
Version 1.2.13
Version 1.2.14
Version 1.2.15
Version 1.2.16
Version 1.2.17
Version 1.2.18
Version 1.2.19
Version 1.2.1
Version 1.2.20
Version 1.2.21.1
Version 1.2.21
Version 1.2.22
Version 1.2.23
Version 1.2.24
Version 1.2.25
Version 1.2.26.1
Version 1.2.26.2
Version 1.2.26
Version 1.2.27
Version 1.2.2

References (22)

Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.