CVE-2018-7285
Last modified
CVE-2018-7285 is a vulnerability of currently unknown severity. A NULL pointer access issue was discovered in Asterisk 15.x through 15.2.1. The RTP support in Asterisk maintains its own registry of dynamic codecs and desired payload numbers. EPSS estimates a 5.24% chance of exploitation in the next 30 days.
Description
A NULL pointer access issue was discovered in Asterisk 15.x through 15.2.1. The RTP support in Asterisk maintains its own registry of dynamic codecs and desired payload numbers. While an SDP negotiation may result in a codec using a different payload number, these desired ones are still stored internally. When an RTP packet was received, this registry would be consulted if the payload number was not found in the negotiated SDP. This registry was incorrectly consulted for all packets, even those which are dynamic. If the payload number resulted in a codec of a different type than the RTP stream (for example, the payload number resulted in a video codec but the stream carried audio), a crash could occur if no stream of that type had been negotiated. This was due to the code incorrectly assuming that a stream of that type would always exist.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Digium | Asterisk | >= 15.0.0, <= 15.2.1 |
References
- http://downloads.asterisk.org/pub/security/AST-2018-001.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/103149Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1040415Third Party Advisory, VDB Entry
- http://downloads.asterisk.org/pub/security/AST-2018-001.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/103149Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1040415Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-7285?
How severe is CVE-2018-7285?
How do I fix CVE-2018-7285?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2018
- CVE-2018-7278An issue was discovered on RLE Protocol Converter FDS-PC / F…
- CVE-2018-7279A remote code execution issue was discovered in AlienVault U…
- CVE-2018-7280The Ninja Forms plugin before 3.2.14 for WordPress has XSS.
- CVE-2018-7281CactusVPN 5.3.6 for macOS contains a root privilege escalati…
- CVE-2018-7282The username parameter of the TITool PrintMonitor solution d…9.8
- CVE-2018-7284A Buffer Overflow issue was discovered in Asterisk through 1…
- CVE-2018-7286An issue was discovered in Asterisk through 13.19.1, 14.x th…
- CVE-2018-7287An issue was discovered in res_http_websocket.c in Asterisk …
- CVE-2018-7289An issue was discovered in armadito-windows-driver/src/commu…
- CVE-2018-7290Cross Site Scripting (XSS) exists in Tiki before 12.13, 15.6…
- CVE-2018-7295ffxivlauncher.exe in Square Enix Final Fantasy XIV 4.21 and …
- CVE-2018-7296Directory Traversal / Arbitrary File Read in User.getLanguag…
Are you affected by CVE-2018-7285?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
