Attack (Attack ID:715552)

Release Date2014/06/11

Attack NameSIP Digium Asterisk Cookie Stack Overflow -3 (CVE-2014-2286)

Severity

BUG ID

CVE ID

 

Description

A stack-overflow vulnerability has been reported in Digium Asterisk. The vulnerability is due to insufficient validation of Cookie: headers in HTTP requests sent to the HTTP management interface.
Impact:Remote code execution
Affected System:Windows
Additional References:CVE-2014-2286

 

Solution

Update vendor's patch.