CVE-2007-1595

Publication date 22 March 2007

Last updated 24 July 2024


Ubuntu priority

The Asterisk Extension Language (AEL) in pbx/pbx_ael.c in Asterisk does not properly generate extensions, which allows remote attackers to execute arbitrary extensions and have an unknown impact by specifying an invalid extension in a certain form.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
asterisk 9.10 karmic
Fixed 1.4.11~dfsg-1
9.04 jaunty
Fixed 1.4.11~dfsg-1
8.10 intrepid
Fixed 1.4.11~dfsg-1
8.04 LTS hardy
Fixed 1.4.11~dfsg-1
7.10 gutsy
Fixed 1.4.11~dfsg-1
7.04 feisty Ignored end of life, was needed
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper Ignored end of life