CVE-2012-3553

Publication date 19 June 2012

Last updated 24 July 2024


Ubuntu priority

Description

chan_skinny.c in the Skinny (aka SCCP) channel driver in Asterisk Open Source 10.x before 10.5.1 allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) by sending a Station Key Pad Button message and closing a connection in off-hook mode, a related issue to CVE-2012-2948.

Read the notes from the security team

Status

Package Ubuntu Release Status
asterisk 12.04 LTS precise
Not affected
11.10 oneiric
Not affected
11.04 natty
Not affected
10.04 LTS lucid
Not affected
8.04 LTS hardy
Not affected

Notes


jdstrand

per Debian: <not-affected> (Only affects Asterisk 10)