Skip to main content

Vendor/product archive

digium / certified_asterisk CVEs

Beta · best-effort

51 CVEs tagged to digium / certified_asterisk3 Critical, 17 High, 29 Medium, 2 Low, 0 Unrated.

CVE-2021-26712

Published Feb 18, 2021

Incorrect access controls in res_srtp.c in Sangoma Asterisk 13.38.1, 16.16.0, 17.9.1, and 18.2.0 and Certified Asterisk 16.8-cert5 allow a remote unauthenticated attacker to prema…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-26906

Published Feb 18, 2021

An issue was discovered in res_pjsip_session.c in Digium Asterisk through 13.38.1; 14.x, 15.x, and 16.x through 16.16.0; 17.x through 17.9.1; and 18.x through 18.2.0, and Certifie…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-26717

Published Feb 18, 2021

An issue was discovered in Sangoma Asterisk 16.x before 16.16.1, 17.x before 17.9.2, and 18.x before 18.2.1 and Certified Asterisk before 16.8-cert6. When re-negotiating for T.38,…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-17850

Published Dec 27, 2017

An issue was discovered in Asterisk 13.18.4 and older, 14.7.4 and older, 15.1.4 and older, and 13.18-cert1 and older. A select set of SIP messages create a dialog in Asterisk. Tho…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-17664

Published Dec 13, 2017

A Remote Crash issue was discovered in Asterisk Open Source 13.x before 13.18.4, 14.x before 14.7.4, and 15.x before 15.1.4 and Certified Asterisk before 13.13-cert9. Certain comp…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-14100

Published Sep 2, 2017

In Asterisk 11.x before 11.25.2, 13.x before 13.17.1, and 14.x before 14.6.1 and Certified Asterisk 11.x before 11.6-cert17 and 13.x before 13.13-cert5, unauthorized command execu…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-25 of 51 CVEsPage 1 of 3