>> Asterisk SIP Channel Driver Request Handling Remote Denial of Service Vulnerability
Title : Asterisk SIP Channel Driver Request Handling Remote Denial of Service Vulnerability VUPEN ID : VUPEN/ADV-2007-0830 CVE ID : CVE-2007-1306
Rated as : Low Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-03-06
Technical Description
A vulnerability has been identified in Asterisk, which could be exploited by remote attackers to cause a denial of service. This issue is due to an error in the SIP channel driver that fails to properly handle malformed requests sent to port 5060/UDP, which could be exploited by remote unauthenticated attackers to crash an affected application, creating a denial of service condition.