Remote Denial of Service Vulnerability in Certified Asterisk and Open Source Asterisk
CVE-2012-2948

Currently unrated

Key Information:

Vendor

Asterisk

Vendor
CVE Published:
2 June 2012

What is CVE-2012-2948?

The Skinny channel driver in Certified Asterisk and Asterisk Open Source is vulnerable to a denial of service attack. This occurs when remote authenticated users close a connection while in off-hook mode, leading to a NULL pointer dereference and subsequent daemon crash. It is crucial for users to update their Asterisk installations to mitigate this vulnerability and ensure stable operation of their systems.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.