CVE Vulnerabilities

CVE-2006-4345

Published: Aug 24, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Stack-based buffer overflow in channels/chan_mgcp.c in MGCP in Asterisk 1.0 through 1.2.10 allows remote attackers to execute arbitrary code via a crafted audit endpoint (AUEP) response.

Affected Software

NameVendorStart VersionEnd Version
AsteriskDigium1.0.0 (including)1.0.0 (including)
AsteriskDigium1.0.1 (including)1.0.1 (including)
AsteriskDigium1.0.2 (including)1.0.2 (including)
AsteriskDigium1.0.3 (including)1.0.3 (including)
AsteriskDigium1.0.4 (including)1.0.4 (including)
AsteriskDigium1.0.5 (including)1.0.5 (including)
AsteriskDigium1.0.6 (including)1.0.6 (including)
AsteriskDigium1.0.7 (including)1.0.7 (including)
AsteriskDigium1.0.8 (including)1.0.8 (including)
AsteriskDigium1.0.9 (including)1.0.9 (including)
AsteriskDigium1.0.10 (including)1.0.10 (including)
AsteriskDigium1.0_rc1 (including)1.0_rc1 (including)
AsteriskDigium1.0_rc2 (including)1.0_rc2 (including)
AsteriskDigium1.2.0_beta1 (including)1.2.0_beta1 (including)
AsteriskDigium1.2.0_beta2 (including)1.2.0_beta2 (including)
AsteriskDigium1.2.6 (including)1.2.6 (including)
AsteriskDigium1.2.7 (including)1.2.7 (including)
AsteriskDigium1.2.8 (including)1.2.8 (including)
AsteriskDigium1.2.9 (including)1.2.9 (including)
AsteriskDigium1.2.10 (including)1.2.10 (including)
AsteriskUbuntudapper*
AsteriskUbuntudevel*
AsteriskUbuntuedgy*
AsteriskUbuntufeisty*
AsteriskUbuntugutsy*
AsteriskUbuntuhardy*
AsteriskUbuntuintrepid*
AsteriskUbuntujaunty*
AsteriskUbuntukarmic*
AsteriskUbuntuupstream*

References