vulnerability
FreeBSD: VID-818B2BCB-A46F-11E9-BED9-001999F8D30B (CVE-2019-12827): asterisk -- Remote crash vulnerability with MESSAGE messages
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
4 | (AV:N/AC:L/Au:S/C:N/I:N/A:P) | Jun 13, 2019 | Jul 13, 2019 | Aug 16, 2019 |
Severity
4
CVSS
(AV:N/AC:L/Au:S/C:N/I:N/A:P)
Published
Jun 13, 2019
Added
Jul 13, 2019
Modified
Aug 16, 2019
Description
Details for this vulnerability have not been published by NIST at this point. Descriptions from software vendor advisories for this issue are provided below.
From VID-818B2BCB-A46F-11E9-BED9-001999F8D30B:
The Asterisk project reports:
A specially crafted SIP in-dialog MESSAGE message can cause Asterisk to crash.
Solution(s)
freebsd-upgrade-package-asterisk13freebsd-upgrade-package-asterisk15freebsd-upgrade-package-asterisk16
References

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.