Heap-based Buffer Overflow in Asterisk Open Source
CVE-2012-2415

Currently unrated

Key Information:

Vendor

Asterisk

Vendor
CVE Published:
30 April 2012

What is CVE-2012-2415?

A vulnerability exists in the Skinny channel driver within Asterisk Open Source, which allows remote authenticated users to trigger a buffer overflow through a sequence of KEYPAD_BUTTON_MESSAGE events. This can result in a denial of service or potentially lead to other unspecified impacts, posing a significant risk to the affected Asterisk versions.

References

EPSS Score

10% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.