CVE-2021-26717
Last modified
CVE-2021-26717 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. An issue was discovered in Sangoma Asterisk 16.x before 16.16.1, 17.x before 17.9.2, and 18.x before 18.2.1 and Certified Asterisk before 16.8-cert6. When re-negotiating for T.38, if the initial remote response was delayed just enough, Asterisk would send both audio and T.38 in the SDP. EPSS estimates a 2.18% chance of exploitation in the next 30 days.
Description
An issue was discovered in Sangoma Asterisk 16.x before 16.16.1, 17.x before 17.9.2, and 18.x before 18.2.1 and Certified Asterisk before 16.8-cert6. When re-negotiating for T.38, if the initial remote response was delayed just enough, Asterisk would send both audio and T.38 in the SDP. If this happened, and the remote responded with a declined T.38 stream, then Asterisk would crash.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Digium | Asterisk | >= 16.0.0, < 16.16.1 |
| Digium | Asterisk | >= 17.0.0, < 17.9.2 |
| Digium | Asterisk | >= 18.0, < 18.2.1 |
| Digium | Certified Asterisk | 16.8 |
References
- http://seclists.org/fulldisclosure/2021/Feb/58Mailing List, Patch, Third Party Advisory
- https://downloads.asterisk.org/pub/security/Vendor Advisory
- https://issues.asterisk.org/jira/browse/ASTERISK-29203Issue Tracking, Patch, Vendor Advisory
- http://seclists.org/fulldisclosure/2021/Feb/58Mailing List, Patch, Third Party Advisory
- https://downloads.asterisk.org/pub/security/Vendor Advisory
- https://issues.asterisk.org/jira/browse/ASTERISK-29203Issue Tracking, Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2021-26717?
How severe is CVE-2021-26717?
How do I fix CVE-2021-26717?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2021
- CVE-2021-26711A frame-injection issue in the online help in Redwood Report…5.3
- CVE-2021-26712Incorrect access controls in res_srtp.c in Sangoma Asterisk …7.5
- CVE-2021-26713A stack-based buffer overflow in res_rtp_asterisk.c in Sango…6.5
- CVE-2021-26714The Enterprise License Manager portal in Mitel MiContact Cen…9.8
- CVE-2021-26715The OpenID Connect server implementation for MITREid Connect…9.1
- CVE-2021-26716Modules/input/Views/schedule.php in Emoncms through 10.2.7 a…6.1
- CVE-2021-26718KIS for macOS in some use cases was vulnerable to AV bypass …5.5
- CVE-2021-26719A directory traversal issue was discovered in Gradle gradle-…6.5
- CVE-2021-26720avahi-daemon-check-dns.sh in the Debian avahi package throug…7.8
- CVE-2021-26722LinkedIn Oncall through 1.4.0 allows reflected XSS via /quer…6.1
- CVE-2021-26723Jenzabar 9.2.x through 9.2.2 allows /ics?tool=search&query= …6.1
- CVE-2021-26724OS Command Injection vulnerability when changing date settin…7.2
Are you affected by CVE-2021-26717?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
