CVE-2013-2685
01.04.2013, 16:55
Stack-based buffer overflow in res/res_format_attr_h264.c in Asterisk Open Source 11.x before 11.2.2 allows remote attackers to execute arbitrary code via a long sprop-parameter-sets H.264 media attribute in a SIP Session Description Protocol (SDP) header.Enginsight
Vendor | Product | Version |
---|---|---|
asterisk | open_source | 11.0.0 |
asterisk | open_source | 11.0.0:beta1 |
asterisk | open_source | 11.0.0:beta2 |
asterisk | open_source | 11.0.0:rc1 |
asterisk | open_source | 11.0.0:rc2 |
asterisk | open_source | 11.0.1 |
asterisk | open_source | 11.0.2 |
asterisk | open_source | 11.1.0 |
asterisk | open_source | 11.1.0:rc1 |
asterisk | open_source | 11.1.0:rc3 |
asterisk | open_source | 11.1.1 |
asterisk | open_source | 11.1.2 |
asterisk | open_source | 11.2.0 |
asterisk | open_source | 11.2.0:rc1 |
asterisk | open_source | 11.2.0:rc2 |
asterisk | open_source | 11.2.1 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration