Asterisk.chan_skinny.Large.Memcpy.DoS

description-logoDescription

This indicates an attack attempt against a denial-of-service vulnerability in the Skinny channel driver (chan_skinny) in Asterisk.
The vulnerability is caused by an error when the vulnerable software handles a certain data length value in a crafted packet. It allows a remote attacker to cause a denial of service.

affected-products-logoAffected Products

Asterisk AsteriskNow Beta 6
Asterisk AsteriskNow Beta 5
Asterisk Asterisk Business Edition B.2.2.0
Asterisk Asterisk Business Edition B.1.3.3
Asterisk Asterisk Business Edition B.1.3.2
Asterisk Asterisk Business Edition A
Asterisk Asterisk Appliance Developer Kit 0.4
Asterisk Asterisk 1.4.7
Asterisk Asterisk 1.4.4
Asterisk Asterisk 1.4.3
Asterisk Asterisk 1.4.2
Asterisk Asterisk 1.4.1
Asterisk Asterisk 1.2.21
Asterisk Asterisk 1.2.19
Asterisk Asterisk 1.2.18
Asterisk Asterisk 1.2.17
Asterisk Asterisk 1.2.16
Asterisk Asterisk 1.2.15
Asterisk Asterisk 1.2.14
Asterisk Asterisk 1.2.13
Asterisk Asterisk 1.2.11
Asterisk Asterisk 1.2.11
Asterisk Asterisk 1.2.10
Asterisk Asterisk 1.2 .0-beta2
Asterisk Asterisk 1.2 .0-beta1
Asterisk Asterisk 1.0.12
Asterisk Asterisk 1.0.11
Asterisk Asterisk 1.0.10
Asterisk Asterisk 1.0.9
Asterisk Asterisk 1.0.8
Asterisk Asterisk 1.0.7
Asterisk Asterisk 1.0.6
Asterisk Asterisk 1.0
Asterisk Asterisk B.2.1
Asterisk Asterisk 1.4 Beta
Asterisk Appliance Developers Kit 0.3

Impact logoImpact

Denial of service

recomended-action-logoRecommended Actions

Upgrade to the latest versions:
http://www.digium.com

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-06-02 15.855 Sig Added
2019-03-05 14.565 Sig Added