Lucene search

K
cve[email protected]CVE-2008-3263
HistoryJul 22, 2008 - 11:41 p.m.

CVE-2008-3263

2008-07-2223:41:00
CWE-399
web.nvd.nist.gov
115
4
asterisk open source
iax2 protocol
denial of service
cve-2008-3263
security vulnerability
remote attack

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.2

Confidence

Low

EPSS

0.966

Percentile

99.6%

The IAX2 protocol implementation in Asterisk Open Source 1.0.x, 1.2.x before 1.2.30, and 1.4.x before 1.4.21.2; Business Edition A.x.x, B.x.x before B.2.5.4, and C.x.x before C.1.10.3; AsteriskNOW; Appliance Developer Kit 0.x.x; and s800i 1.0.x before 1.2.0.1 allows remote attackers to cause a denial of service (call-number exhaustion and CPU consumption) by quickly sending a large number of IAX2 (IAX) POKE requests.

Affected configurations

NVD
Node
asteriskasteriskMatch0.1.0
OR
asteriskasteriskMatch0.1.1
OR
asteriskasteriskMatch0.1.2
OR
asteriskasteriskMatch0.1.3
OR
asteriskasteriskMatch0.1.4
OR
asteriskasteriskMatch0.1.5
OR
asteriskasteriskMatch0.1.6
OR
asteriskasteriskMatch0.1.7
OR
asteriskasteriskMatch0.1.8
OR
asteriskasteriskMatch0.1.9
OR
asteriskasteriskMatch0.1.9_1
OR
asteriskasteriskMatch0.1.10
OR
asteriskasteriskMatch0.1.11
OR
asteriskasteriskMatch0.1.12
OR
asteriskasteriskMatch0.2
OR
asteriskasteriskMatch0.3
OR
asteriskasteriskMatch0.4
OR
asteriskasteriskMatch0.5.0
OR
asteriskasteriskMatch0.7.0
OR
asteriskasteriskMatch0.7.1
OR
asteriskasteriskMatch0.7.2
OR
asteriskasteriskMatch0.9.0
OR
asteriskasteriskMatch1.0
OR
asteriskasteriskMatch1.0rc1
OR
asteriskasteriskMatch1.0.1
OR
asteriskasteriskMatch1.0.2
OR
asteriskasteriskMatch1.0.3
OR
asteriskasteriskMatch1.0.4
OR
asteriskasteriskMatch1.0.5
OR
asteriskasteriskMatch1.0.6
OR
asteriskasteriskMatch1.0.7
OR
asteriskasteriskMatch1.0.8
OR
asteriskasteriskMatch1.0.9
OR
asteriskasteriskMatch1.0.10
OR
asteriskasteriskMatch1.0.11
OR
asteriskasteriskMatch1.0.11.1
OR
asteriskasteriskMatch1.0.12
OR
asteriskasteriskMatch1.2.0_beta1
OR
asteriskasteriskMatch1.2.0_beta2
OR
asteriskasteriskMatch1.2.1
OR
asteriskasteriskMatch1.2.2
OR
asteriskasteriskMatch1.2.3
OR
asteriskasteriskMatch1.2.4
OR
asteriskasteriskMatch1.2.5
OR
asteriskasteriskMatch1.2.6
OR
asteriskasteriskMatch1.2.7
OR
asteriskasteriskMatch1.2.7.1
OR
asteriskasteriskMatch1.2.8
OR
asteriskasteriskMatch1.2.9
OR
asteriskasteriskMatch1.2.9.1
OR
asteriskasteriskMatch1.2.10
OR
asteriskasteriskMatch1.2.11
OR
asteriskasteriskMatch1.2.12
OR
asteriskasteriskMatch1.2.13
OR
asteriskasteriskMatch1.2.14
OR
asteriskasteriskMatch1.2.15
OR
asteriskasteriskMatch1.2.16
OR
asteriskasteriskMatch1.2.17
OR
asteriskasteriskMatch1.2.18
OR
asteriskasteriskMatch1.2.19
OR
asteriskasteriskMatch1.2.20
OR
asteriskasteriskMatch1.2.21
OR
asteriskasteriskMatch1.2.22
OR
asteriskasteriskMatch1.2.23
OR
asteriskasteriskMatch1.2.24
OR
asteriskasteriskMatch1.2.25
OR
asteriskasteriskMatch1.2.26
OR
asteriskasteriskMatch1.2.26.1
OR
asteriskasteriskMatch1.2.26.2
OR
asteriskasteriskMatch1.2.27
OR
asteriskasteriskMatch1.2.28
OR
asteriskasteriskMatch1.2.28.1
OR
asteriskasteriskMatch1.2.29
OR
asteriskasteriskMatch1.2.30
OR
asteriskasteriskMatch1.4.1
OR
asteriskasteriskMatch1.4.2
OR
asteriskasteriskMatch1.4.3
OR
asteriskasteriskMatch1.4.4
OR
asteriskasteriskMatch1.4.4_2007-04-27
OR
asteriskasteriskMatch1.4.5
OR
asteriskasteriskMatch1.4.6
OR
asteriskasteriskMatch1.4.7
OR
asteriskasteriskMatch1.4.8
OR
asteriskasteriskMatch1.4.9
OR
asteriskasteriskMatch1.4.10
OR
asteriskasteriskMatch1.4.11
OR
asteriskasteriskMatch1.4.12
OR
asteriskasteriskMatch1.4.13
OR
asteriskasteriskMatch1.4.14
OR
asteriskasteriskMatch1.4.15
OR
asteriskasteriskMatch1.4.16
OR
asteriskasteriskMatch1.4.16.1
OR
asteriskasteriskMatch1.4.16.2
OR
asteriskasteriskMatch1.4.17
OR
asteriskasteriskMatch1.4.18
OR
asteriskasteriskMatch1.4.18.1
OR
asteriskasteriskMatch1.4.19
OR
asteriskasteriskMatch1.4_beta
OR
asteriskasteriskMatch1.4_revision_95946
OR
asteriskasteriskMatch1.6
OR
asteriskasteriskMatcha
OR
asteriskasteriskMatchabusiness
OR
asteriskasteriskMatchb.1.3.2
OR
asteriskasteriskMatchb.1.3.2business
OR
asteriskasteriskMatchb.1.3.3
OR
asteriskasteriskMatchb.1.3.3business
OR
asteriskasteriskMatchb.2.2.0
OR
asteriskasteriskMatchb.2.2.0business
VendorProductVersionCPE
asteriskasterisk1.2.27cpe:/a:asterisk:asterisk:1.2.27:::
asteriskasterisk1.4.16.2cpe:/a:asterisk:asterisk:1.4.16.2:::
asteriskasterisk1.0.6cpe:/a:asterisk:asterisk:1.0.6:::
asteriskasterisk1.0.8cpe:/a:asterisk:asterisk:1.0.8:::
asteriskasterisk1.4.9cpe:/a:asterisk:asterisk:1.4.9:::
asteriskasterisk1.4.16.1cpe:/a:asterisk:asterisk:1.4.16.1:::
asteriskasterisk1.2.8cpe:/a:asterisk:asterisk:1.2.8:::
asteriskasterisk1.4.11cpe:/a:asterisk:asterisk:1.4.11:::
asteriskasterisk1.6cpe:/a:asterisk:asterisk:1.6:::
asteriskasterisk1.2.21cpe:/a:asterisk:asterisk:1.2.21:::
Rows per page:
1-10 of 1041

Social References

More

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.2

Confidence

Low

EPSS

0.966

Percentile

99.6%