CVE-2019-15639

Name
CVE-2019-15639
Description
main/translate.c in Sangoma Asterisk 13.28.0 and 16.5.0 allows a remote attacker to send a specific RTP packet during a call and cause a crash in a specific scenario.
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
Third Party Advisory http://packetstormsecurity.com/files/154372/Asterisk-Project-Security-Advisory-AST-2019-005.html
Vendor Advisory http://downloads.asterisk.org/pub/security/AST-2019-005.html

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:digium:asterisk:*:*:*:*:*:*:*:* asterisk >= 13.0.0 <= 13.28.0
cpe:2.3:a:digium:asterisk:*:*:*:*:*:*:*:* asterisk >= 16.0.0 <= 16.5.0

Vulnerable and fixed packages

Source package Branch Version Maintainer Status