FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

asterisk -- Remote crash in res_pjsip_diversion

Affected packages
asterisk13 < 13.38.1
asterisk16 < 16.15.1
asterisk18 < 18.1.1

Details

VuXML ID 6adf6ce0-44a6-11eb-95b7-001999f8d30b
Discovery 2020-12-02
Entry 2020-12-22

The Asterisk project reports:

AST-2020-003: A crash can occur in Asterisk when a SIP message is received that has a History-Info header, which contains a tel-uri.

AST-2020-004: A crash can occur in Asterisk when a SIP 181 response is received that has a Diversion header, which contains a tel-uri.

References

URL https://downloads.asterisk.org/pub/security/AST-2020-003.html
URL https://downloads.asterisk.org/pub/security/AST-2020-004.html