CVE-2011-1507
Publication date 27 April 2011
Last updated 24 July 2024
Ubuntu priority
Asterisk Open Source 1.4.x before 1.4.40.1, 1.6.1.x before 1.6.1.25, 1.6.2.x before 1.6.2.17.3, and 1.8.x before 1.8.3.3 and Asterisk Business Edition C.x.x before C.3.6.4 do not restrict the number of unauthenticated sessions to certain interfaces, which allows remote attackers to cause a denial of service (file descriptor exhaustion and disk space exhaustion) via a series of TCP connections.
Status
Package | Ubuntu Release | Status |
---|---|---|
asterisk | 11.04 natty |
Fixed 1:1.6.2.9-2ubuntu2.1
|
10.10 maverick |
Fixed 1:1.6.2.7-1ubuntu1.2
|
|
10.04 LTS lucid |
Fixed 1:1.6.2.5-0ubuntu1.4
|
|
9.10 karmic | Ignored end of life | |
8.04 LTS hardy | Ignored end of life | |
6.06 LTS dapper | Ignored end of life |
Patch details
Package | Patch details |
---|---|
asterisk |