vulnerability
FreeBSD: VID-be261737-c535-11e7-8da5-001999f8d30b (CVE-2017-16672): asterisk -- Memory/File Descriptor/RTP leak in pjsip session resource
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 4 | (AV:N/AC:M/Au:N/C:N/I:N/A:P) | Nov 9, 2017 | Dec 14, 2017 | Dec 10, 2025 |
Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
Nov 9, 2017
Added
Dec 14, 2017
Modified
Dec 10, 2025
Description
The Asterisk project reports: A memory leak occurs when an Asterisk pjsip session object is created and that call gets rejected before the session itself is fully established. When this happens the session object never gets destroyed. This then leads to file descriptors and RTP ports being leaked as well.
Solution
freebsd-upgrade-package-asterisk13
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.