Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2012-4737

channels/chan_iax2.c in Asterisk Open Source 1.8.x before 1.8.15.1 and 10.x before 10.7.1, Certified Asterisk 1.8.11 before 1.8.11-cert7, Asterisk Digiumphones 10.x.x-digiumphones before 10.7.1-digiumphones, and Asterisk Business Edition C.3.x before C.3.7.6 does not enforce ACL rules during certain uses of peer credentials, which allows remote authenticated users to bypass intended outbound-call restrictions by leveraging the availability of these credentials.

  • Published: Aug 31, 2012
  • Updated: Apr 13, 2023
  • CVE: CVE-2012-4737
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6
  • AV:N/AC:M/Au:S/C:P/I:P/A:P

CWEs:

Software From Fixed in
digium / asterisk 1.8.3-rc3 1.8.3-rc3.x
digium / asterisk 1.8.8.0-rc5 1.8.8.0-rc5.x
digium / asterisk 1.8.11.0 1.8.11.0.x
digium / asterisk 1.8.3 1.8.3.x
digium / asterisk 1.8.2.4 1.8.2.4.x
digium / asterisk 1.8.0-beta2 1.8.0-beta2.x
digium / asterisk 1.8.6.0-rc3 1.8.6.0-rc3.x
digium / asterisk 1.8.3-rc1 1.8.3-rc1.x
digium / asterisk 1.8.1 1.8.1.x
digium / asterisk 1.8.1.2 1.8.1.2.x
digium / asterisk 1.8.8.0-rc4 1.8.8.0-rc4.x
digium / asterisk 1.8.7.1 1.8.7.1.x
digium / asterisk 1.8.7.0-rc1 1.8.7.0-rc1.x
digium / asterisk 1.8.13.0-rc1 1.8.13.0-rc1.x
digium / asterisk 1.8.4.3 1.8.4.3.x
digium / asterisk 1.8.0-beta4 1.8.0-beta4.x
digium / asterisk 1.8.13.1 1.8.13.1.x
digium / asterisk 1.8.10.0 1.8.10.0.x
digium / asterisk 1.8.4-rc1 1.8.4-rc1.x
digium / asterisk 1.8.15.0 1.8.15.0.x
digium / asterisk 1.8.0-rc5 1.8.0-rc5.x
digium / asterisk 1.8.10.0-rc2 1.8.10.0-rc2.x
digium / asterisk 1.8.9.0 1.8.9.0.x
digium / asterisk 1.8.9.3 1.8.9.3.x
digium / asterisk 1.8.4.4 1.8.4.4.x
digium / asterisk 1.8.7.0 1.8.7.0.x
digium / asterisk 1.8.12 1.8.12.x
digium / asterisk 1.8.8.0-rc2 1.8.8.0-rc2.x
digium / asterisk 1.8.5.0 1.8.5.0.x
digium / asterisk 1.8.8.0-rc1 1.8.8.0-rc1.x
digium / asterisk 1.8.13.0 1.8.13.0.x
digium / asterisk 1.8.3.1 1.8.3.1.x
digium / asterisk 1.8.12.0-rc3 1.8.12.0-rc3.x
digium / asterisk 1.8.12.0-rc1 1.8.12.0-rc1.x
digium / asterisk 1.8.8.0 1.8.8.0.x
digium / asterisk 1.8.0-beta3 1.8.0-beta3.x
digium / asterisk 1.8.8.1 1.8.8.1.x
digium / asterisk 1.8.0-beta5 1.8.0-beta5.x
digium / asterisk 1.8.12.0-rc2 1.8.12.0-rc2.x
digium / asterisk 1.8.4 1.8.4.x
digium / asterisk 1.8.9.0-rc1 1.8.9.0-rc1.x
digium / asterisk 1.8.12.0 1.8.12.0.x
digium / asterisk 1.8.3.2 1.8.3.2.x
digium / asterisk 1.8.0-rc2 1.8.0-rc2.x
digium / asterisk 1.8.7.0-rc2 1.8.7.0-rc2.x
digium / asterisk 1.8.3-rc2 1.8.3-rc2.x
digium / asterisk 1.8.4.2 1.8.4.2.x
digium / asterisk 1.8.9.1 1.8.9.1.x
digium / asterisk 1.8.10.0-rc4 1.8.10.0-rc4.x
digium / asterisk 1.8.15.0-rc1 1.8.15.0-rc1.x
digium / asterisk 1.8.6.0-rc2 1.8.6.0-rc2.x
digium / asterisk 1.8.14.0-rc2 1.8.14.0-rc2.x
digium / asterisk 1.8.2.3 1.8.2.3.x
digium / asterisk 1.8.11.0-rc3 1.8.11.0-rc3.x
digium / asterisk 1.8.11.0-rc2 1.8.11.0-rc2.x
digium / asterisk 1.8.14.1 1.8.14.1.x
digium / asterisk 1.8.3.3 1.8.3.3.x
digium / asterisk 1.8.4-rc2 1.8.4-rc2.x
digium / asterisk 1.8.2.1 1.8.2.1.x
digium / asterisk 1.8.1-rc1 1.8.1-rc1.x
digium / asterisk 1.8.0 1.8.0.x
digium / asterisk 1.8.0-rc3 1.8.0-rc3.x
digium / asterisk 1.8.11.1 1.8.11.1.x
digium / asterisk 1.8.1.1 1.8.1.1.x
digium / asterisk 1.8.2 1.8.2.x
digium / asterisk 1.8.10.0-rc1 1.8.10.0-rc1.x
digium / asterisk 1.8.2.2 1.8.2.2.x
digium / asterisk 1.8.4-rc3 1.8.4-rc3.x
digium / asterisk 1.8.9.2 1.8.9.2.x
digium / asterisk 1.8.10.1 1.8.10.1.x
digium / asterisk 1.8.14.0-rc1 1.8.14.0-rc1.x
digium / asterisk 1.8.0-beta1 1.8.0-beta1.x
digium / asterisk 1.8.9.0-rc3 1.8.9.0-rc3.x
digium / asterisk 1.8.13.0-rc2 1.8.13.0-rc2.x
digium / asterisk 1.8.6.0 1.8.6.0.x
digium / asterisk 1.8.0-rc4 1.8.0-rc4.x
digium / asterisk 1.8.10.0-rc3 1.8.10.0-rc3.x
digium / asterisk 1.8.8.2 1.8.8.2.x
digium / asterisk 1.8.5-rc1 1.8.5-rc1.x
digium / asterisk 1.8.5 1.8.5.x
digium / asterisk 1.8.9.0-rc2 1.8.9.0-rc2.x
digium / asterisk 1.8.4.1 1.8.4.1.x
digium / asterisk 1.8.8.0-rc3 1.8.8.0-rc3.x
digium / asterisk 1.8.6.0-rc1 1.8.6.0-rc1.x
digium / asterisk 10.2.1 10.2.1.x
digium / asterisk 10.0.0-rc2 10.0.0-rc2.x
digium / asterisk 10.0.1 10.0.1.x
digium / asterisk 10.3.0-rc2 10.3.0-rc2.x
digium / asterisk 10.5.0-rc1 10.5.0-rc1.x
digium / asterisk 10.5.1 10.5.1.x
digium / asterisk 10.5.0-rc2 10.5.0-rc2.x
digium / asterisk 10.1.0-rc2 10.1.0-rc2.x
digium / asterisk 10.5.0 10.5.0.x
digium / asterisk 10.2.0 10.2.0.x
digium / asterisk 10.2.0-rc3 10.2.0-rc3.x
digium / asterisk 10.4.0-rc1 10.4.0-rc1.x
digium / asterisk 10.4.0 10.4.0.x
digium / asterisk 10.1.0-rc1 10.1.0-rc1.x
digium / asterisk 10.0.0-rc3 10.0.0-rc3.x
digium / asterisk 10.3.1 10.3.1.x
digium / asterisk 10.1.0 10.1.0.x
digium / asterisk 10.2.0-rc2 10.2.0-rc2.x
digium / asterisk 10.2.0-rc1 10.2.0-rc1.x
digium / asterisk 10.6.0-rc1 10.6.0-rc1.x
digium / asterisk 10.0.0-beta1 10.0.0-beta1.x
digium / asterisk 10.6.0 10.6.0.x
digium / asterisk 10.6.0-rc2 10.6.0-rc2.x
digium / asterisk 10.1.1 10.1.1.x
digium / asterisk 10.3.0-rc3 10.3.0-rc3.x
digium / asterisk 10.1.3 10.1.3.x
digium / asterisk 10.6.1 10.6.1.x
digium / asterisk 10.1.2 10.1.2.x
digium / asterisk 10.4.0-rc2 10.4.0-rc2.x
digium / asterisk 10.7.0 10.7.0.x
digium / asterisk 10.0.0 10.0.0.x
digium / asterisk 10.3.0 10.3.0.x
digium / asterisk 10.2.0-rc4 10.2.0-rc4.x
digium / asterisk 10.4.2 10.4.2.x
digium / asterisk 10.0.0-rc1 10.0.0-rc1.x
digium / asterisk 10.4.1 10.4.1.x
digium / asterisk 10.4.0-rc3 10.4.0-rc3.x
digium / asterisk 10.0.0-beta2 10.0.0-beta2.x
digium / asterisk 10.7.0-rc1 10.7.0-rc1.x
digium / certified_asterisk 1.8.11-cert2 1.8.11-cert2.x
digium / certified_asterisk 1.8.11-cert5 1.8.11-cert5.x
digium / certified_asterisk 1.8.11-cert6 1.8.11-cert6.x
digium / certified_asterisk 1.8.11-cert1 1.8.11-cert1.x
digium / certified_asterisk 1.8.11-cert 1.8.11-cert.x
digium / certified_asterisk 1.8.11-cert3 1.8.11-cert3.x
digium / certified_asterisk 1.8.11-cert4 1.8.11-cert4.x
digium / asterisk 10.5.2 10.5.2.x
digium / asterisk c.3.1.0 c.3.1.0.x
digium / asterisk c.3.6.2 c.3.6.2.x
digium / asterisk c.3.1.1 c.3.1.1.x
digium / asterisk c.3.2.2 c.3.2.2.x
digium / asterisk c.3.6.4 c.3.6.4.x
digium / asterisk c.3.7.5 c.3.7.5.x
digium / asterisk c.3.0 c.3.0.x
digium / asterisk c.3.6.3 c.3.6.3.x
digium / asterisk c.3.2.3 c.3.2.3.x
digium / asterisk c.3.3.2 c.3.3.2.x