CVE Vulnerabilities

CVE-2007-4521

Published: Aug 28, 2007 | Modified: Oct 15, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Asterisk Open Source 1.4.5 through 1.4.11, when configured to use an IMAP voicemail storage backend, allows remote attackers to cause a denial of service via an e-mail with an invalid/corrupted MIME body, which triggers a crash when the recipient listens to voicemail.

Affected Software

Name Vendor Start Version End Version
Asterisk Asterisk 1.4.5 (including) 1.4.5 (including)
Asterisk Asterisk 1.4.6 (including) 1.4.6 (including)
Asterisk Asterisk 1.4.7 (including) 1.4.7 (including)
Asterisk Asterisk 1.4.8 (including) 1.4.8 (including)
Asterisk Asterisk 1.4.9 (including) 1.4.9 (including)
Asterisk Asterisk 1.4.10 (including) 1.4.10 (including)
Asterisk Asterisk 1.4.11 (including) 1.4.11 (including)

References