CVE-2010-0441
published 2010-02-04CVE-2010-0441: Asterisk Open Source 1.6.0.x before 1.6.0.22, 1.6.1.x before 1.6.1.14, and 1.6.2.x before 1.6.2.2, and Business Edition C.3 before C.3.3.2, allows remote…
PriorityP423medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
3.38%
87.3th percentile
Asterisk Open Source 1.6.0.x before 1.6.0.22, 1.6.1.x before 1.6.1.14, and 1.6.2.x before 1.6.2.2, and Business Edition C.3 before C.3.3.2, allows remote attackers to cause a denial of service (daemon crash) via an SIP T.38 negotiation with an SDP FaxMaxDatagram field that is (1) missing, (2) modified to contain a negative number, or (3) modified to contain a large number.
Affected
55 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
| asterisk | asterisk | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
Asterisk: Remote DoS via specially-crafted FaxMaxDatagram SDP packets (AST-2010-001)
vendor_redhat·2010-02-02·CVSS 5.0
CVE-2010-0441 [MEDIUM] Asterisk: Remote DoS via specially-crafted FaxMaxDatagram SDP packets (AST-2010-001)
Asterisk: Remote DoS via specially-crafted FaxMaxDatagram SDP packets (AST-2010-001)
Asterisk Open Source 1.6.0.x before 1.6.0.22, 1.6.1.x before 1.6.1.14, and 1.6.2.x before 1.6.2.2, and Business Edition C.3 before C.3.3.2, allows remote attackers to cause a denial of service (daemon crash) via an SIP T.38 negotiation with an SDP FaxMaxDatagram field that is (1) missing, (2) modified to contain a negative number, or (3) modified to contain a large number.
Debian
CVE-2010-0441: asterisk - Asterisk Open Source 1.6.0.x before 1.6.0.22, 1.6.1.x before 1.6.1.14, and 1.6.2...
vendor_debian·2010·CVSS 5.0
CVE-2010-0441 [MEDIUM] CVE-2010-0441: asterisk - Asterisk Open Source 1.6.0.x before 1.6.0.22, 1.6.1.x before 1.6.1.14, and 1.6.2...
Asterisk Open Source 1.6.0.x before 1.6.0.22, 1.6.1.x before 1.6.1.14, and 1.6.2.x before 1.6.2.2, and Business Edition C.3 before C.3.3.2, allows remote attackers to cause a denial of service (daemon crash) via an SIP T.38 negotiation with an SDP FaxMaxDatagram field that is (1) missing, (2) modified to contain a negative number, or (3) modified to contain a large number.
Scope: local
bullseye: resolved (fixed in 1:1.6.2.2-1)
sid: resolved (fixed in 1:1.6.2.2-1)
VulDB
Digium Asterisk up to 1.6.1.4 input validation (Nessus ID 47325 / ID 116864)
vuldb·2026-04-30·CVSS 5.0
CVE-2010-0441 [MEDIUM] Digium Asterisk up to 1.6.1.4 input validation (Nessus ID 47325 / ID 116864)
A vulnerability marked as problematic has been reported in Digium Asterisk up to 1.6.1.4. This affects an unknown function. Performing a manipulation results in improper input validation.
This vulnerability is identified as CVE-2010-0441. The attack can be initiated remotely. There is not any exploit available.
It is suggested to upgrade the affected component.
GHSA
GHSA-q2qq-4jfp-7w3h: Asterisk Open Source 1
ghsa_unreviewed·2022-05-02
CVE-2010-0441 [MEDIUM] CWE-20 GHSA-q2qq-4jfp-7w3h: Asterisk Open Source 1
Asterisk Open Source 1.6.0.x before 1.6.0.22, 1.6.1.x before 1.6.1.14, and 1.6.2.x before 1.6.2.2, and Business Edition C.3 before C.3.3.2, allows remote attackers to cause a denial of service (daemon crash) via an SIP T.38 negotiation with an SDP FaxMaxDatagram field that is (1) missing, (2) modified to contain a negative number, or (3) modified to contain a large number.
OSV
CVE-2010-0441: Asterisk Open Source 1
osv·2010-02-04·CVSS 5.0
CVE-2010-0441 [MEDIUM] CVE-2010-0441: Asterisk Open Source 1
Asterisk Open Source 1.6.0.x before 1.6.0.22, 1.6.1.x before 1.6.1.14, and 1.6.2.x before 1.6.2.2, and Business Edition C.3 before C.3.3.2, allows remote attackers to cause a denial of service (daemon crash) via an SIP T.38 negotiation with an SDP FaxMaxDatagram field that is (1) missing, (2) modified to contain a negative number, or (3) modified to contain a large number.
Suricata
ET WEB_SPECIFIC_APPS TECHNOTE shop_this_skin_path Parameter Remote File Inclusion
suricata·2010-07-30·CVSS 6.8
CVE-2009-0441 [MEDIUM] ET WEB_SPECIFIC_APPS TECHNOTE shop_this_skin_path Parameter Remote File Inclusion
ET WEB_SPECIFIC_APPS TECHNOTE shop_this_skin_path Parameter Remote File Inclusion
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS TECHNOTE shop_this_skin_path Parameter Remote File Inclusion"; flow:established,to_server; http.method; content:"GET"; http.uri; content:"/body_default.php?"; nocase; content:"GOODS[no]="; nocase; content:"GOODS[gs_input]="; nocase; content:"shop_this_skin_path="; nocase; pcre:"/shop_this_skin_path=\s*(https?|ftps?|php)\:\//i"; reference:url,secunia.com/advisories/33732/; reference:cve,CVE-2009-0441; reference:url,milw0rm.com/exploits/7965; classtype:web-application-attack; sid:2009229; rev:8; metadata:created_at 2010_07_30, signature_severity Major, updated_at 2024_03_06, mitre_tactic_id TA0001, mitre_tactic_name Initial_Acce
Suricata
ET WEB_SPECIFIC_APPS TECHNOTE shop_this_skin_path Parameter Local File Inclusion
suricata·2010-07-30·CVSS 6.8
CVE-2009-0441 [MEDIUM] ET WEB_SPECIFIC_APPS TECHNOTE shop_this_skin_path Parameter Local File Inclusion
ET WEB_SPECIFIC_APPS TECHNOTE shop_this_skin_path Parameter Local File Inclusion
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS TECHNOTE shop_this_skin_path Parameter Local File Inclusion"; flow:established,to_server; http.method; content:"GET"; http.uri; content:"/body_default.php?"; nocase; content:"GOODS[no]="; nocase; content:"GOODS[gs_input]="; fast_pattern; nocase; content:"shop_this_skin_path="; nocase; http.uri.raw; url_decode; content:"|2e 2e 2f|"; reference:url,secunia.com/advisories/33732/; reference:cve,CVE-2009-0441; reference:url,milw0rm.com/exploits/7965; classtype:web-application-attack; sid:2009230; rev:9; metadata:affected_product Web_Server_Applications, attack_target Server, created_at 2010_07_30, deployment Perimeter, deployment Int
No public exploits indexed.
http://downloads.asterisk.org/pub/security/AST-2010-001-1.6.0.diffhttp://downloads.asterisk.org/pub/security/AST-2010-001-1.6.1.diffhttp://downloads.asterisk.org/pub/security/AST-2010-001-1.6.2.diffhttp://downloads.asterisk.org/pub/security/AST-2010-001.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-March/037679.htmlhttp://secunia.com/advisories/38395http://secunia.com/advisories/39096http://securitytracker.com/id?1023532http://www.securityfocus.com/archive/1/509327/100/0/threadedhttp://www.securityfocus.com/bid/38047http://www.vupen.com/english/advisories/2010/0289https://issues.asterisk.org/view.php?id=16517https://issues.asterisk.org/view.php?id=16634https://issues.asterisk.org/view.php?id=16724http://downloads.asterisk.org/pub/security/AST-2010-001-1.6.0.diffhttp://downloads.asterisk.org/pub/security/AST-2010-001-1.6.1.diffhttp://downloads.asterisk.org/pub/security/AST-2010-001-1.6.2.diffhttp://downloads.asterisk.org/pub/security/AST-2010-001.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-March/037679.htmlhttp://secunia.com/advisories/38395http://secunia.com/advisories/39096http://securitytracker.com/id?1023532http://www.securityfocus.com/archive/1/509327/100/0/threadedhttp://www.securityfocus.com/bid/38047http://www.vupen.com/english/advisories/2010/0289https://issues.asterisk.org/view.php?id=16517https://issues.asterisk.org/view.php?id=16634https://issues.asterisk.org/view.php?id=16724
2010-02-04
Published