FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

asterisk -- Infinite loop when reading iostreams

Affected packages
asterisk15 < 15.4.1

Details

VuXML ID f14ce57f-6dc8-11e8-a671-001999f8d30b
Discovery 2018-06-11
Entry 2018-06-11

The Asterisk project reports:

When connected to Asterisk via TCP/TLS if the client abruptly disconnects, or sends a specially crafted message then Asterisk gets caught in an infinite loop while trying to read the data stream. Thus rendering the system as unusable.

References

URL https://downloads.asterisk.org/pub/security/AST-2018-007.html