CVE-2019-15297NULL Pointer Dereference in Asterisk

Severity
6.5MEDIUMNVD
EPSS
1.8%
top 17.12%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 9
Latest updateAug 31

Description

res_pjsip_t38 in Sangoma Asterisk 15.x before 15.7.4 and 16.x before 16.5.1 allows an attacker to trigger a crash by sending a declined stream in a response to a T.38 re-invite initiated by Asterisk. The crash occurs because of a NULL session media object dereference.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages4 packages

NVDdigium/asterisk16.0.016.16.2+4
debiandebian/asterisk< asterisk 1:16.10.0~dfsg-1 (bullseye)+1
Debiandigium/asterisk< 1:16.28.0~dfsg-0+deb11u1+1

Also affects: Debian Linux 10.0, 11.0, 9.0

Patches

🔴Vulnerability Details

4
GHSA
GHSA-544v-7w28-m77x: res_pjsip_t38 in Sangoma Asterisk 162022-08-31
OSV
CVE-2021-46837: res_pjsip_t38 in Sangoma Asterisk 162022-08-30
GHSA
GHSA-qc2g-m5w4-ffmq: res_pjsip_t38 in Sangoma Asterisk 132022-05-24
OSV
CVE-2019-15297: res_pjsip_t38 in Sangoma Asterisk 152019-09-09

📋Vendor Advisories

2
Debian
CVE-2021-46837: asterisk - res_pjsip_t38 in Sangoma Asterisk 16.x before 16.16.2, 17.x before 17.9.3, and 1...2021
Debian
CVE-2019-15297: asterisk - res_pjsip_t38 in Sangoma Asterisk 15.x before 15.7.4 and 16.x before 16.5.1 allo...2019
CVE-2019-15297 — NULL Pointer Dereference in Asterisk | cvebase