chan_iax2.c in the IAX2 channel driver in Certified Asterisk 1.8.11-cert before 1.8.11-cert2 and Asterisk Open Source 1.8.x before 1.8.12.1 and 10.x before 10.4.1, when a certain mohinterpret setting is enabled, allows remote attackers to cause a denial of service (daemon crash) by placing a call on hold.

Subscriptions

Vendors Products
Debian Linux Subscribe
Asterisk Subscribe
Certified Asterisk Subscribe

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-2493-1 asterisk security update
EUVD EUVD EUVD-2012-2925 chan_iax2.c in the IAX2 channel driver in Certified Asterisk 1.8.11-cert before 1.8.11-cert2 and Asterisk Open Source 1.8.x before 1.8.12.1 and 10.x before 10.4.1, when a certain mohinterpret setting is enabled, allows remote attackers to cause a denial of service (daemon crash) by placing a call on hold.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-06T19:50:05.310Z

Reserved: 2012-05-29T00:00:00.000Z

Link: CVE-2012-2947

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2012-06-02T15:55:00.983

Modified: 2025-04-11T00:51:21.963

Link: CVE-2012-2947

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses