1
Candidate: CVE-2014-8415
4
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-8415
5
http://downloads.asterisk.org/pub/security/AST-2014-015.html
7
Race condition in the chan_pjsip channel driver in Asterisk Open Source
8
12.x before 12.7.1 and 13.x before 13.0.1 allows remote attackers to cause
9
a denial of service (assertion failure and crash) via a cancel request for
10
a SIP session with a queued action to (1) answer a session or (2) send
16
Discovered-by: Yaron Nahum
20
upstream: http://downloads.asterisk.org/pub/security/AST-2014-015-13.diff (13)
21
upstream_asterisk: released (13.0.1)
22
lucid_asterisk: ignored (reached end-of-life)
23
precise_asterisk: not-affected
24
trusty_asterisk: not-affected
25
utopic_asterisk: not-affected
26
devel_asterisk: not-affected (1:13.1.0~dfsg-1ubuntu1)