CVE-2011-0495
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Stack-based buffer overflow in the ast_uri_encode function in main/utils.c in Asterisk Open Source before 1.4.38.1, 1.4.39.1, 1.6.1.21, 1.6.2.15.1, 1.6.2.16.1, 1.8.1.2, 1.8.2.; and Business Edition before C.3.6.2; when running in pedantic mode allows remote authenticated users to execute arbitrary code via crafted caller ID data in vectors involving the (1) SIP channel driver, (2) URIENCODE dialplan function, or (3) AGI dialplan function.
Desbordamiento de búfer basado en pila en la función ast_uri_encode, en main/utils.c, en Asterisk Open Source before v.1.4.38.1, v.1.4.39.1, v.1.6.1.21, v.1.6.2.15.1, v.1.6.2.16.1, v.1.8.1.2, v.1.8.2.; y Business Edition before v.C.3.6.2; cuando se ejecuta en modo "pedantic" permite a usuarios autenticados ejectuar código de su elección manipulados con el dato llamador ID en vectores que involucran el (1) el driver del SIP, (2) la función URIENCODE dialplan, o la función AGI dialplan.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2011-01-19 CVE Reserved
- 2011-01-20 CVE Published
- 2023-09-10 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-787: Out-of-bounds Write
CAPEC
References (12)
URL | Tag | Source |
---|---|---|
http://osvdb.org/70518 | Broken Link | |
http://secunia.com/advisories/42935 | Third Party Advisory | |
http://secunia.com/advisories/43119 | Third Party Advisory | |
http://secunia.com/advisories/43373 | Third Party Advisory | |
http://www.securityfocus.com/archive/1/515781/100/0/threaded | Mailing List | |
http://www.securityfocus.com/bid/45839 | Third Party Advisory | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/64831 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://downloads.asterisk.org/pub/security/AST-2011-001-1.6.2.diff | 2020-07-15 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Digium Search vendor "Digium" | S800i Firmware Search vendor "Digium" for product "S800i Firmware" | 1.2.0 Search vendor "Digium" for product "S800i Firmware" and version "1.2.0" | - |
Affected
| in | Digium Search vendor "Digium" | S800i Search vendor "Digium" for product "S800i" | - | - |
Safe
|
Digium Search vendor "Digium" | Asterisk Search vendor "Digium" for product "Asterisk" | < c.3.6.2 Search vendor "Digium" for product "Asterisk" and version " < c.3.6.2" | business |
Affected
| ||||||
Digium Search vendor "Digium" | Asterisk Search vendor "Digium" for product "Asterisk" | >= 1.2.0 <= 1.2.40 Search vendor "Digium" for product "Asterisk" and version " >= 1.2.0 <= 1.2.40" | - |
Affected
| ||||||
Digium Search vendor "Digium" | Asterisk Search vendor "Digium" for product "Asterisk" | >= 1.4.0 < 1.4.38.1 Search vendor "Digium" for product "Asterisk" and version " >= 1.4.0 < 1.4.38.1" | - |
Affected
| ||||||
Digium Search vendor "Digium" | Asterisk Search vendor "Digium" for product "Asterisk" | >= 1.4.39 < 1.4.39.1 Search vendor "Digium" for product "Asterisk" and version " >= 1.4.39 < 1.4.39.1" | - |
Affected
| ||||||
Digium Search vendor "Digium" | Asterisk Search vendor "Digium" for product "Asterisk" | >= 1.6.1 < 1.6.1.21 Search vendor "Digium" for product "Asterisk" and version " >= 1.6.1 < 1.6.1.21" | - |
Affected
| ||||||
Digium Search vendor "Digium" | Asterisk Search vendor "Digium" for product "Asterisk" | >= 1.6.2 < 1.6.2.15.1 Search vendor "Digium" for product "Asterisk" and version " >= 1.6.2 < 1.6.2.15.1" | - |
Affected
| ||||||
Digium Search vendor "Digium" | Asterisk Search vendor "Digium" for product "Asterisk" | >= 1.6.2.16 < 1.6.2.16.1 Search vendor "Digium" for product "Asterisk" and version " >= 1.6.2.16 < 1.6.2.16.1" | - |
Affected
| ||||||
Digium Search vendor "Digium" | Asterisk Search vendor "Digium" for product "Asterisk" | >= 1.8.0 < 1.8.1.2 Search vendor "Digium" for product "Asterisk" and version " >= 1.8.0 < 1.8.1.2" | - |
Affected
| ||||||
Digium Search vendor "Digium" | Asterisk Search vendor "Digium" for product "Asterisk" | >= 1.8.2 < 1.8.2.2 Search vendor "Digium" for product "Asterisk" and version " >= 1.8.2 < 1.8.2.2" | - |
Affected
| ||||||
Digium Search vendor "Digium" | Asterisknow Search vendor "Digium" for product "Asterisknow" | 1.5 Search vendor "Digium" for product "Asterisknow" and version "1.5" | - |
Affected
| ||||||
Fedoraproject Search vendor "Fedoraproject" | Fedora Search vendor "Fedoraproject" for product "Fedora" | 13 Search vendor "Fedoraproject" for product "Fedora" and version "13" | - |
Affected
| ||||||
Fedoraproject Search vendor "Fedoraproject" | Fedora Search vendor "Fedoraproject" for product "Fedora" | 14 Search vendor "Fedoraproject" for product "Fedora" and version "14" | - |
Affected
| ||||||
Debian Search vendor "Debian" | Debian Linux Search vendor "Debian" for product "Debian Linux" | 6.0 Search vendor "Debian" for product "Debian Linux" and version "6.0" | - |
Affected
|