The Skinny channel driver (chan_skinny) in Asterisk before 1.2.22 and 1.4.x before 1.4.8, Business Edition before B.2.2.1, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial of service (crash) via a certain data length value in a crafted packet, which results in an "overly large memcpy."
2007-07-18T17:30:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 5.0 (MEDIUM)
AV:N/AC:L/Au:N/C:N/I:N/A:P
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | asterisk | asterisk | 1.0 | Yes |
Application | asterisk | asterisk | 1.0.6 | Yes |
Application | asterisk | asterisk | 1.0.7 | Yes |
Application | asterisk | asterisk | 1.0.8 | Yes |
Application | asterisk | asterisk | 1.0.9 | Yes |
Application | asterisk | asterisk | 1.0.10 | Yes |
Application | asterisk | asterisk | 1.0.11 | Yes |
Application | asterisk | asterisk | 1.0.12 | Yes |
Application | asterisk | asterisk | 1.2.0_beta1 | Yes |
Application | asterisk | asterisk | 1.2.0_beta2 | Yes |
Application | asterisk | asterisk | 1.2.5 | Yes |
Application | asterisk | asterisk | 1.2.6 | Yes |
Application | asterisk | asterisk | 1.2.7 | Yes |
Application | asterisk | asterisk | 1.2.8 | Yes |
Application | asterisk | asterisk | 1.2.9 | Yes |
Application | asterisk | asterisk | 1.2.10 | Yes |
Application | asterisk | asterisk | 1.2.11 | Yes |
Application | asterisk | asterisk | 1.2.12 | Yes |
Application | asterisk | asterisk | 1.2.13 | Yes |
Application | asterisk | asterisk | 1.2.14 | Yes |
Application | asterisk | asterisk | 1.2.15 | Yes |
Application | asterisk | asterisk | 1.2.16 | Yes |
Application | asterisk | asterisk | 1.2.17 | Yes |
Application | asterisk | asterisk | 1.4.1 | Yes |
Application | asterisk | asterisk | 1.4.2 | Yes |
Application | asterisk | asterisk | 1.4.4_2007-04-27 | Yes |
Application | asterisk | asterisk | 1.4_beta | Yes |
Application | asterisk | asterisk | a | Yes |
Application | asterisk | asterisk | b.1.3.2 | Yes |
Application | asterisk | asterisk | b.1.3.3 | Yes |
Application | asterisk | asterisk | b.2.2.0 | Yes |
Application | asterisk | asterisk_appliance_developer_kit | ≤ 0.4 | Yes |
Application | asterisk | asterisknow | beta_5 | Yes |
Application | asterisk | asterisknow | beta_6 | Yes |
Hardware | asterisk | s800i_appliance | 1.0 | Yes |
Hardware | asterisk | s800i_appliance | 1.0.1 | Yes |