CVE-2019-15639

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
09/09/2019
Last modified:
10/09/2019

Description

main/translate.c in Sangoma Asterisk 13.28.0 and 16.5.0 allows a remote attacker to send a specific RTP packet during a call and cause a crash in a specific scenario.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:digium:asterisk:*:*:*:*:*:*:*:* 13.0.0 (including) 13.28.0 (including)
cpe:2.3:a:digium:asterisk:*:*:*:*:*:*:*:* 16.0.0 (including) 16.5.0 (including)