| |||||||||||||
| CVE ID: | CVE-2012-1184 |
| Description: | Stack-based buffer overflow in the ast_parse_digest function in main/utils.c in Asterisk 1.8.x before 1.8.10.1 and 10.x before 10.2.1 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a long string in an HTTP Digest Authentication header. |
| Test IDs: | 1.3.6.1.4.1.25623.1.0.802838 |
| Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2012-1184 http://www.openwall.com/lists/oss-security/2012/03/16/10 http://www.openwall.com/lists/oss-security/2012/03/16/17 http://osvdb.org/80126 http://www.securitytracker.com/id?1026813 http://secunia.com/advisories/48417 XForce ISS Database: asterisk-astparsedigest-bo(74083) http://xforce.iss.net/xforce/xfdb/74083 |
|