Candidate: CVE-2019-15639 PublicDate: 2019-09-09 13:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15639 http://downloads.asterisk.org/pub/security/AST-2019-005.html http://packetstormsecurity.com/files/154372/Asterisk-Project-Security-Advisory-AST-2019-005.html Description: main/translate.c in Sangoma Asterisk 13.28.0 and 16.5.0 allows a remote attacker to send a specific RTP packet during a call and cause a crash in a specific scenario. Ubuntu-Description: Notes: Mitigation: Bugs: Priority: untriaged Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H [7.5 HIGH] Patches_asterisk: upstream_asterisk: needs-triage precise/esm_asterisk: DNE trusty_asterisk: ignored (out of standard support) trusty/esm_asterisk: DNE xenial_asterisk: not-affected (code not present) bionic_asterisk: not-affected (code not present) disco_asterisk: ignored (reached end-of-life) eoan_asterisk: not-affected (code not present) devel_asterisk: not-affected (code not present)