Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2012-2415
HistoryApr 30, 2012 - 8:55 p.m.

CVE-2012-2415

2012-04-3020:55:02
Debian Security Bug Tracker
security-tracker.debian.org
15

CVSS2

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

EPSS

0.955

Percentile

99.4%

Heap-based buffer overflow in chan_skinny.c in the Skinny channel driver in Asterisk Open Source 1.6.2.x before 1.6.2.24, 1.8.x before 1.8.11.1, and 10.x before 10.3.1 allows remote authenticated users to cause a denial of service or possibly have unspecified other impact via a series of KEYPAD_BUTTON_MESSAGE events.

OSVersionArchitecturePackageVersionFilename
Debian11allasterisk< 1:1.8.11.1~dfsg-1asterisk_1:1.8.11.1~dfsg-1_all.deb
Debian999allasterisk< 1:1.8.11.1~dfsg-1asterisk_1:1.8.11.1~dfsg-1_all.deb

CVSS2

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

EPSS

0.955

Percentile

99.4%