First published: Tue Oct 29 2019(Updated: )
asterisk allows calls on prohibited networks
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Asterisk Open Source | >=1.6.1<1.6.1.8 | |
Debian Debian Linux | =8.0 | |
Debian Debian Linux | =9.0 | |
Debian Debian Linux | =10.0 | |
debian/asterisk | 1:16.28.0~dfsg-0+deb11u4 1:20.8.1~dfsg+~cs6.14.40431414-1 | |
Sangoma Asterisk | >=1.6.1<1.6.1.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2009-3723 is high with a severity value of 7.5.
CVE-2009-3723 allows calls on prohibited networks in Asterisk Open Source.
CVE-2009-3723 affects Debian Debian Linux versions 8.0, 9.0, and 10.0.
To fix CVE-2009-3723 in Debian Asterisk package, update to version 1:16.2.1~dfsg-1+deb10u2 or later.
More information about CVE-2009-3723 can be found at the following references: [1] http://downloads.asterisk.org/pub/security/AST-2009-007.html, [2] https://access.redhat.com/security/cve/cve-2009-3723, [3] https://security-tracker.debian.org/tracker/CVE-2009-3723.