Asterisk PBX Multiple Logging Format String Vulnerabilities
BID:10569
Info
Asterisk PBX Multiple Logging Format String Vulnerabilities
| Bugtraq ID: | 10569 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 18 2004 12:00AM |
| Updated: | Jun 18 2004 12:00AM |
| Credit: | [email protected] disclosed these vulnerabilities. |
| Vulnerable: |
Asterisk Asterisk 0.7.2 Asterisk Asterisk 0.7.1 Asterisk Asterisk 0.7 .0 |
| Not Vulnerable: |
Asterisk Asterisk 0.9 .0 |
Discussion
Asterisk PBX Multiple Logging Format String Vulnerabilities
It is reported that Asterisk is susceptible to format string vulnerabilities in its logging functions.
An attacker may use these vulnerabilities to corrupt memory, and read or write arbitrary memory. Remote code execution is likely possible.
Due to the nature of these vulnerabilities, there may exist many different avenues of attack. Anything that can potentially call the logging functions with user-supplied data is vulnerable.
Versions 0.7.0 through to 0.7.2 are reported vulnerable.
It is reported that Asterisk is susceptible to format string vulnerabilities in its logging functions.
An attacker may use these vulnerabilities to corrupt memory, and read or write arbitrary memory. Remote code execution is likely possible.
Due to the nature of these vulnerabilities, there may exist many different avenues of attack. Anything that can potentially call the logging functions with user-supplied data is vulnerable.
Versions 0.7.0 through to 0.7.2 are reported vulnerable.
Exploit / POC
Asterisk PBX Multiple Logging Format String Vulnerabilities
A proof-of-concept exploit was provided.
A proof-of-concept exploit was provided.
Solution / Fix
Asterisk PBX Multiple Logging Format String Vulnerabilities
Solution:
It is reported that version 0.9.0 is not vulnerable to these vulnerabilities. All affected users are urged to upgrade.
Asterisk Asterisk 0.7 .0
Asterisk Asterisk 0.7.1
Asterisk Asterisk 0.7.2
Solution:
It is reported that version 0.9.0 is not vulnerable to these vulnerabilities. All affected users are urged to upgrade.
Asterisk Asterisk 0.7 .0
-
Asterisk asterisk-0.9.0.tar.gz
ftp://ftp.asterisk.org/pub/telephony/asterisk/asterisk-0.9.0.tar.gz
Asterisk Asterisk 0.7.1
-
Asterisk asterisk-0.9.0.tar.gz
ftp://ftp.asterisk.org/pub/telephony/asterisk/asterisk-0.9.0.tar.gz
Asterisk Asterisk 0.7.2
-
Asterisk asterisk-0.9.0.tar.gz
ftp://ftp.asterisk.org/pub/telephony/asterisk/asterisk-0.9.0.tar.gz
References
Asterisk PBX Multiple Logging Format String Vulnerabilities
References:
References:
- Asterisk Homepage (Asterisk)