VDB
CVE-2014-2286
CVE-2014-2286
PUBLISHED
CVSS 7.5 HIGH
De multiples vulnérabilités ont été corrigées dans <span class="textit">Asterisk</span>. Elles permettent à un attaquant de provoquer un déni de service à distance.
EPSS 14.76% · 94.6th percentile
Risk Scores
CVSS 2.0
7.5
EPSS Score
14.76%
94.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Asterisk | Asterisk | |
| digium | asterisk | 1.8.18.0, 1.8.10.0, 1.8.13.0 |
| Asterisk | Certified Asterisk | |
| fedoraproject | fedora | 19, 20 |
| n/a | n/a | n/a |
| digium | certified_asterisk | 1.8.0.0, 1.8.0.0, 1.8.0.0 |
Timeline
- Mar 13, 2014 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 3, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Feb 8, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 2, 2023 EPSS Score
- Jul 16, 2023 EPSS Score
- Aug 23, 2023 EPSS Score
- Sep 7, 2023 EPSS Score
References
- http://downloads.asterisk.org/pub/security/AST-2014-001.html advisory
- http://downloads.asterisk.org/pub/security/AST-2014-003.html advisory
- http://downloads.asterisk.org/pub/security/AST-2014-002.html advisory
- https://issues.asterisk.org/jira/browse/ASTERISK-23340 url
- http://downloads.asterisk.org/pub/security/AST-2014-001-1.8.diff url
- 66093 vdb
- MDVSA-2014:078 vendor-advisory
- FEDORA-2014-3762 vendor-advisory
- FEDORA-2014-3779 vendor-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2014-2286 advisory