Lucene search

K
osvGoogleOSV:CVE-2018-19278
HistoryNov 14, 2018 - 8:29 p.m.

CVE-2018-19278

2018-11-1420:29:00
Google
osv.dev
4

AI Score

7.4

Confidence

High

EPSS

0.007

Percentile

80.3%

Buffer overflow in DNS SRV and NAPTR lookups in Digium Asterisk 15.x before 15.6.2 and 16.x before 16.0.1 allows remote attackers to crash Asterisk via a specially crafted DNS SRV or NAPTR response, because a buffer size is supposed to match an expanded length but actually matches a compressed length.

AI Score

7.4

Confidence

High

EPSS

0.007

Percentile

80.3%