CVE-2012-2948
4.0
Vector
AV:N/AC:L/Au:S/C:N/I:N/A:P
Exploitability: 8.0 / Impact: 2.9
Source: NVD
Description
chan_skinny.c in the Skinny (aka SCCP) channel driver in Certified Asterisk 1.8.11-cert before 1.8.11-cert2 and Asterisk Open Source 1.8.x before 1.8.12.1 and 10.x before 10.4.1 allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) by closing a connection in off-hook mode.
Affected (72)
Products: Asterisk: Certified Asterisk, Open Source · Sangoma: Asterisk
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.8.11 cert1 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.8.0 | |
| Up to 1.8.12.0 |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 10.0.0 | |
| Up to 10.4.0 |
Related CWEs
References (14)
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.