CVE-2007-5690

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
29/10/2007
Last modified:
09/04/2025

Description

Buffer overflow in sethdlc.c in the Asterisk Zaptel 1.4.5.1 might allow local users to gain privileges via a long device name (interface name) in the ifr_name field. NOTE: the vendor disputes this issue, stating that the application requires root access, so privilege boundaries are not crossed

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:asterisk:zaptel:1.4.5.1:*:*:*:*:*:*:*