CVE-2007-4280

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
09/08/2007
Last modified:
29/07/2017

Description

The Skinny channel driver (chan_skinny) in Asterisk Open Source before 1.4.10, AsteriskNOW before beta7, Appliance Developer Kit before 0.7.0, and Appliance s800i before 1.0.3 allows remote authenticated users to cause a denial of service (application crash) via a CAPABILITIES_RES_MESSAGE packet with a capabilities count larger than the capabilities_res_message array population.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:asterisk:asterisk:*:*:*:*:*:*:*:* 1.4.9 (including)
cpe:2.3:a:asterisk:asterisk_appliance_developer_kit:*:*:*:*:*:*:*:* 0.6.0 (including)
cpe:2.3:a:asterisk:asterisknow:*:*:*:*:*:*:*:* beta_6 (including)
cpe:2.3:a:asterisk:s800i:*:*:*:*:*:*:*:* 1.0.2 (including)