Digium Asterisk RTP Stack Information Disclosure (CVE-2017-14099)

An information disclosure vulnerability exists in Digium Asterisk. The vulnerability is due to improper handling of incoming RTP/RTCP packets when the chan_sip and chan_pjsip channel drivers are configured to use NAT and Symmetric-RTP respectively.

from Check Point Update Services Advisories http://ift.tt/2zS60Bd

No comments:

Post a Comment

Hackers Use LinkedIn Messages to Spread RAT Malware Through DLL Sideloading

Cybersecurity researchers have uncovered a new phishing campaign that exploits social media private messages to propagate malicious payloads...