Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Asterisk Open Source 1.2.26 through 1.2.30.3 and Business Edition B.2.3.5 through B.2.5.5, when realtime IAX2 users are enabled, allows remote attackers to cause a denial of service (crash) via authentication attempts involving (1) an unknown user or (2) a user using hostname matching.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Asterisk IAX2未经认证会话处理远程拒绝服务漏洞
Vulnerability Description
Asterisk是开放源码的软件PBX,支持各种VoIP协议和设备。 如果将Asterisk服务器配置为使用实时IAX2用户的话,Asterisk的实时配置API中可能出现被破坏的函数调用。当未知用户或使用主机名匹配的用户试图进行认证的时候,就会导致Asterisk服务器崩溃。
CVSS Information
N/A
Vulnerability Type
N/A