Vulnerabilities > Digium > Asterisk > 1.2.39

DATE CVE VULNERABILITY TITLE RISK
2007-10-12 CVE-2007-5358 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Digium Asterisk
Multiple buffer overflows in the voicemail functionality in Asterisk 1.4.x before 1.4.13, when using IMAP storage, might allow (1) remote attackers to execute arbitrary code via a long combination of Content-type and Content-description headers, or (2) local users to execute arbitrary code via a long combination of astspooldir, voicemail context, and voicemail mailbox fields.
network
digium CWE-119
6.8