CVE
- Id
- 30212
- CVE No.
- CVE-2008-0095
- Status
- Candidate
- Description
- The SIP channel driver in Asterisk Open Source 1.4.x before 1.4.17, Business Edition before C.1.0-beta8, AsteriskNOW before beta7, Appliance Developer Kit before Asterisk 1.4 revision 95946, and Appliance s800i 1.0.x before 1.0.3.4 allows remote attackers to cause a denial of service (daemon crash) via a BYE message with an Also (Also transfer) header, which triggers a NULL pointer dereference.
- Phase
- Assigned (20080107)
- Votes
- None (candidate not yet proposed)
- Comments