CVE Vulnerabilities

CVE-2007-4521

Published: Aug 28, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Asterisk Open Source 1.4.5 through 1.4.11, when configured to use an IMAP voicemail storage backend, allows remote attackers to cause a denial of service via an e-mail with an invalid/corrupted MIME body, which triggers a crash when the recipient listens to voicemail.

Affected Software

NameVendorStart VersionEnd Version
AsteriskAsterisk1.4.5 (including)1.4.5 (including)
AsteriskAsterisk1.4.6 (including)1.4.6 (including)
AsteriskAsterisk1.4.7 (including)1.4.7 (including)
AsteriskAsterisk1.4.8 (including)1.4.8 (including)
AsteriskAsterisk1.4.9 (including)1.4.9 (including)
AsteriskAsterisk1.4.10 (including)1.4.10 (including)
AsteriskAsterisk1.4.11 (including)1.4.11 (including)

References