Vulnerability Database

289,782

Total vulnerabilities in the database

CVE-2014-9374

Double free vulnerability in the WebSocket Server (res_http_websocket module) in Asterisk Open Source 11.x before 11.14.2, 12.x before 12.7.2, and 13.x before 13.0.2 and Certified Asterisk 11.6 before 11.6-cert9 allows remote attackers to cause a denial of service (crash) by sending a zero length frame after a non-zero length frame.

  • Published: Dec 12, 2014
  • Updated: Apr 13, 2023
  • CVE: CVE-2014-9374
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 5
  • AV:N/AC:L/Au:N/C:N/I:N/A:P

No CWE or OWASP classifications available.

Software From Fixed in
digium / certified_asterisk 11.6-cert8 11.6-cert8.x
digium / certified_asterisk 11.6-cert2 11.6-cert2.x
digium / certified_asterisk 11.6-cert7 11.6-cert7.x
digium / certified_asterisk 11.6-cert4 11.6-cert4.x
digium / certified_asterisk 11.6-cert1 11.6-cert1.x
digium / certified_asterisk 11.6-cert3 11.6-cert3.x
digium / certified_asterisk 11.6-cert6 11.6-cert6.x
digium / certified_asterisk 11.6-cert5 11.6-cert5.x
digium / certified_asterisk 11.6.0 11.6.0.x
digium / asterisk 12.0.0 12.0.0.x
digium / asterisk 11.14.0 11.14.0.x
digium / asterisk 11.3.0-rc1 11.3.0-rc1.x
digium / asterisk 11.2.0-rc2 11.2.0-rc2.x
digium / asterisk 11.0.0-rc2 11.0.0-rc2.x
digium / asterisk 11.4.0-rc3 11.4.0-rc3.x
digium / asterisk 12.3.0-rc2 12.3.0-rc2.x
digium / asterisk 11.2.0 11.2.0.x
digium / asterisk 11.5.0-rc2 11.5.0-rc2.x
digium / asterisk 11.4.0-rc1 11.4.0-rc1.x
digium / asterisk 11.14.0-rc2 11.14.0-rc2.x
digium / asterisk 11.11.0 11.11.0.x
digium / asterisk 12.1.0-rc3 12.1.0-rc3.x
digium / asterisk 12.7.0-rc1 12.7.0-rc1.x
digium / asterisk 11.9.0-rc2 11.9.0-rc2.x
digium / asterisk 11.2.0-rc1 11.2.0-rc1.x
digium / asterisk 12.7.1 12.7.1.x
digium / asterisk 11.0.0-beta1 11.0.0-beta1.x
digium / asterisk 13.0.1 13.0.1.x
digium / asterisk 11.7.0 11.7.0.x
digium / asterisk 12.7.0 12.7.0.x
digium / asterisk 11.12.0 11.12.0.x
digium / asterisk 11.12.0-rc1 11.12.0-rc1.x
digium / asterisk 11.6.0-rc1 11.6.0-rc1.x
digium / asterisk 12.4.0-rc1 12.4.0-rc1.x
digium / asterisk 11.0.0 11.0.0.x
digium / asterisk 11.3.0-rc2 11.3.0-rc2.x
digium / asterisk 11.10.0 11.10.0.x
digium / asterisk 12.7.0-rc2 12.7.0-rc2.x
digium / asterisk 11.8.0-rc1 11.8.0-rc1.x
digium / asterisk 12.2.0-rc3 12.2.0-rc3.x
digium / asterisk 11.4.0 11.4.0.x
digium / asterisk 12.1.0-rc1 12.1.0-rc1.x
digium / asterisk 11.4.0-rc4 11.4.0-rc4.x
digium / asterisk 11.13.0 11.13.0.x
digium / asterisk 12.5.0 12.5.0.x
digium / asterisk 11.1.0-rc3 11.1.0-rc3.x
digium / asterisk 12.2.0-rc2 12.2.0-rc2.x
digium / asterisk 11.1.0-rc2 11.1.0-rc2.x
digium / asterisk 13.0.0 13.0.0.x
digium / asterisk 12.3.0 12.3.0.x
digium / asterisk 11.9.0-rc3 11.9.0-rc3.x
digium / asterisk 11.5.0 11.5.0.x
digium / asterisk 12.5.0-rc1 12.5.0-rc1.x
digium / asterisk 12.4.0 12.4.0.x
digium / asterisk 11.4.0-rc2 11.4.0-rc2.x
digium / asterisk 11.1.0 11.1.0.x
digium / asterisk 11.11.0-rc1 11.11.0-rc1.x
digium / asterisk 11.10.0-rc1 11.10.0-rc1.x
digium / asterisk 11.7.0-rc2 11.7.0-rc2.x
digium / asterisk 11.0.0-beta2 11.0.0-beta2.x
digium / asterisk 12.3.0-rc1 12.3.0-rc1.x
digium / asterisk 11.1.0-rc1 11.1.0-rc1.x
digium / asterisk 12.6.0 12.6.0.x
digium / asterisk 11.8.0 11.8.0.x
digium / asterisk 12.2.0-rc1 12.2.0-rc1.x
digium / asterisk 11.8.0-rc3 11.8.0-rc3.x
digium / asterisk 11.6.0 11.6.0.x
digium / asterisk 12.2.0 12.2.0.x
digium / asterisk 11.6.0-rc2 11.6.0-rc2.x
digium / asterisk 12.1.0-rc2 12.1.0-rc2.x
digium / asterisk 11.14.0-rc1 11.14.0-rc1.x
digium / asterisk 11.7.0-rc1 11.7.0-rc1.x
digium / asterisk 11.9.0 11.9.0.x
digium / asterisk 12.1.0 12.1.0.x
digium / asterisk 12.6.0-rc1 12.6.0-rc1.x
digium / asterisk 11.9.0-rc1 11.9.0-rc1.x
digium / asterisk 11.8.0-rc2 11.8.0-rc2.x
digium / asterisk 11.13.0-rc1 11.13.0-rc1.x
digium / asterisk 11.0.0-rc1 11.0.0-rc1.x
digium / asterisk 11.5.0-rc1 11.5.0-rc1.x