Lucene search

K
cve[email protected]CVE-2017-17664
HistoryDec 13, 2017 - 8:29 p.m.

CVE-2017-17664

2017-12-1320:29:00
CWE-119
web.nvd.nist.gov
55
asterisk
open source
remote crash
rtcp
security vulnerability

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

5.9 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

5.9 Medium

AI Score

Confidence

High

0.929 High

EPSS

Percentile

99.0%

A Remote Crash issue was discovered in Asterisk Open Source 13.x before 13.18.4, 14.x before 14.7.4, and 15.x before 15.1.4 and Certified Asterisk before 13.13-cert9. Certain compound RTCP packets cause a crash in the RTCP Stack.

Affected configurations

NVD
Node
digiumasteriskRange13.0.013.18.4
OR
digiumasteriskRange14.0.014.7.4
OR
digiumasteriskRange15.0.015.1.4
Node
digiumcertified_asteriskRange13.13
OR
digiumcertified_asteriskMatch13.13cert1
OR
digiumcertified_asteriskMatch13.13cert1_rc1
OR
digiumcertified_asteriskMatch13.13cert1_rc2
OR
digiumcertified_asteriskMatch13.13cert1_rc3
OR
digiumcertified_asteriskMatch13.13cert1_rc4
OR
digiumcertified_asteriskMatch13.13cert2
OR
digiumcertified_asteriskMatch13.13cert3
OR
digiumcertified_asteriskMatch13.13cert4
OR
digiumcertified_asteriskMatch13.13cert5
OR
digiumcertified_asteriskMatch13.13cert6
OR
digiumcertified_asteriskMatch13.13cert7
OR
digiumcertified_asteriskMatch13.13cert8

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

5.9 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

5.9 Medium

AI Score

Confidence

High

0.929 High

EPSS

Percentile

99.0%