CVE-2007-6171
Priority
Untriaged
Description
SQL injection vulnerability in the Postgres Realtime Engine
(res_config_pgsql) in Asterisk 1.4.x before 1.4.15 and C.x before
C.1.0-beta6 allows remote attackers to execute arbitrary SQL commands via
unknown vectors.
References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6171
Notes
fujitsu> Only affects 1.4.x, x<15.
Package
Source:
asterisk
(
LP
Ubuntu
Debian
)
Upstream:
not-affected
Ubuntu 8.04 LTS (Hardy Heron)
:
released
(1:1.4.15~dfsg-1)
More Information
Mitre
NVD
Launchpad
Debian
Updated
: 2012-06-01 15:18:23 UTC (commit
5347
)