2017-11-09 01:29:00 2019-10-03 02:03:26

An issue was discovered in Asterisk Open Source 13 before 13.18.1, 14 before 14.7.1, and 15 before 15.1.1 and Certified Asterisk 13.13 before 13.13-cert7. A memory leak occurs when an Asterisk pjsip session object is created and that call gets rejected before the session itself is fully established. When this happens the session object never gets destroyed. Eventually Asterisk can run out of memory and crash.

Vector

NETWORK

Complexity

MEDIUM

Authentication

NONE

Confidentiality

NONE

Integrity

NONE

Availability

PARTIAL
Digium Asterisk 14.4.0 Rc1 (not an official CPE) Digium Asterisk 14.4.0 (not an official CPE) Digium Asterisk 14.3.1 (not an official CPE) Digium Asterisk 14.3.0 Rc2 (not an official CPE) Digium Asterisk 14.3.0 Rc1 (not an official CPE) Digium Asterisk 14.3.0 (not an official CPE) Digium Asterisk 14.2.1 (not an official CPE) Digium Asterisk 14.2.0 (not an official CPE) Digium Asterisk 14.02 (not an official CPE) Digium Asterisk 14.1.2 (not an official CPE) Digium Asterisk 14.1.1 (not an official CPE) Digium Asterisk 14.1.0 (not an official CPE) Digium Asterisk 14.1 (not an official CPE) Digium Asterisk 14.0.2 (not an official CPE) Digium Asterisk 14.0.1 (not an official CPE) Digium Asterisk 14.0.0 Rc2 (not an official CPE) Digium Asterisk 14.0.0 Rc1 (not an official CPE) Digium Asterisk 14.0.0 Beta2 (not an official CPE) Digium Asterisk 14.0.0 Beta1 (not an official CPE) Digium Asterisk 14.0.0 (not an official CPE) Digium Asterisk 13.18.0 (not an official CPE) Digium Asterisk 13.17.2 (not an official CPE) Digium Asterisk 13.17.1 (not an official CPE) Digium Asterisk 13.17.0 Rc1 (not an official CPE) Digium Asterisk 13.17.0 (not an official CPE) Digium Asterisk 13.16.0 Rc2 (not an official CPE) Digium Asterisk 13.16.0 Rc1 (not an official CPE) Digium Asterisk 13.16.0 (not an official CPE) Digium Asterisk 13.15.1 (not an official CPE) Digium Asterisk 13.15.0 Rc3 (not an official CPE) Digium Asterisk 13.15.0 Rc2 (not an official CPE) Digium Asterisk 13.15.0 (not an official CPE) Digium Asterisk 13.15.0 Rc1 (not an official CPE) Digium Asterisk 13.14.1 (not an official CPE) Digium Asterisk 13.14.0 Rc2 (not an official CPE) Digium Asterisk 13.14.0 Rc1 (not an official CPE) Digium Asterisk 13.14.0 (not an official CPE) Digium Asterisk 13.13.1 (not an official CPE) Digium Asterisk 13.13.0 (not an official CPE) Digium Asterisk 13.13 (not an official CPE) Digium Asterisk 13.12.2 (not an official CPE) Digium Asterisk 13.12.1 (not an official CPE) Digium Asterisk 13.12.0 (not an official CPE) Digium Asterisk 13.12 (not an official CPE) Digium Asterisk 13.11.2 (not an official CPE) Digium Asterisk 13.11.1 (not an official CPE) Digium Asterisk 13.11.0 (not an official CPE) Digium Asterisk 13.10.0 Rc1 (not an official CPE) Digium Asterisk 13.10.0 (not an official CPE) Digium Asterisk 13.9.1 (not an official CPE) Digium Asterisk 13.9.0 (not an official CPE) Digium Asterisk 13.8.2 (not an official CPE) Digium Asterisk 13.8.1 (not an official CPE) Digium Asterisk 13.8.0 Rc1 (not an official CPE) Digium Asterisk 13.8.0 (not an official CPE) Digium Asterisk 13.7.2 (not an official CPE) Digium Asterisk 13.7.1 (not an official CPE) Digium Asterisk 13.7.0 Rc2 (not an official CPE) Digium Asterisk 13.7.0 Rc1 (not an official CPE) Digium Asterisk 13.7.0 (not an official CPE) Digium Asterisk 13.6.0 Rc1 (not an official CPE) Digium Asterisk 13.6.0 (not an official CPE) Digium Asterisk 13.5.0 Rc1 (not an official CPE) Digium Asterisk 13.5.0 (not an official CPE) Digium Asterisk 13.4.0 Rc1 (not an official CPE) Digium Asterisk 13.4.0 (not an official CPE) Digium Asterisk 13.3.2 (not an official CPE) Digium Asterisk 13.3.1 (not an official CPE) Digium Asterisk 13.3.0 Rc1 (not an official CPE) Digium Asterisk 13.3.0 (not an official CPE) Digium Asterisk 13.2.1 (not an official CPE) Digium Asterisk 13.2.0 release candidate 1 Digium Asterisk 13.2.0 Digium Asterisk 13.1.1 (not an official CPE) Digium Asterisk 13.1.0 release candidate 2 Digium Asterisk 13.1.0 release candidate 1 Digium Asterisk 13.1.0 Digium Asterisk 13.0.2 (not an official CPE) Digium Asterisk 13.0.1 Digium Asterisk 13.0.0 Beta3 (not an official CPE) Digium Asterisk 13.0.0 Beta2 (not an official CPE) Digium Asterisk 13.0.0 Beta1 (not an official CPE) Digium Asterisk 13.0.0 LTS Digium Asterisk 13.0.0 (not an official CPE) Digium Asterisk 14.4.0 Rc2 (not an official CPE) Digium Asterisk 14.4.0 Rc3 (not an official CPE) Digium Asterisk 14.4.1 (not an official CPE) Digium Asterisk 14.5.0 (not an official CPE) Digium Asterisk 14.5.0 Rc1 (not an official CPE) Digium Asterisk 14.5.0 Rc2 (not an official CPE) Digium Asterisk 14.6.0 (not an official CPE) Digium Asterisk 14.6.0 Rc1 (not an official CPE) Digium Asterisk 14.6.1 (not an official CPE) Digium Asterisk 14.6.2 (not an official CPE) Digium Asterisk 14.7.0 (not an official CPE) Digium Asterisk 15.0.0 (not an official CPE) Digium Asterisk 15.0.0 - (not an official CPE) Digium Asterisk 15.0.0 Beta1 (not an official CPE) Digium Asterisk 15.0.0 Rc1 (not an official CPE) Digium Asterisk 15.1.0 (not an official CPE) Digium Certified asterisk 13.13.0 (not an official CPE) Digium Certified asterisk 13.13.0 Cert1 (not an official CPE) Digium Certified asterisk 13.13.0 Cert1 rc1 (not an official CPE) Digium Certified asterisk 13.13.0 Cert1 rc2 (not an official CPE) Digium Certified asterisk 13.13.0 Cert1 rc3 (not an official CPE) Digium Certified asterisk 13.13.0 Cert1 rc4 (not an official CPE) Digium Certified asterisk 13.13.0 Cert2 (not an official CPE) Digium Certified asterisk 13.13.0 Cert3 (not an official CPE) Digium Certified asterisk 13.13.0 Cert4 (not an official CPE) Digium Certified asterisk 13.13.0 Cert5 (not an official CPE) Digium Certified asterisk 13.13.0 Cert6 (not an official CPE)