Known vulnerabilities in asterisk (Debian package)

Vendor: Debian
Software CPE: cpe:2.3:o:debian:asterisk_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 35
Public exploits: 2
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting asterisk (Debian package) asterisk (Debian package) is affected by 35 known vulnerabilities: 14 high, 16 medium, 5 low Critical High Medium Low

Vulnerabilities (35)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU77708 - Memory corruption
CVE-2023-27585
CWE-119 Medium
No
No
1:16.28.0~dfsg-0+deb11u3 26.06.2023 SB2023062648
SB2022122001
SB2023100957
and 3 more
#VU70479 - Heap-based Buffer Overflow
CVE-2022-23547
CWE-122 High
No
No
1:16.28.0~dfsg-0+deb11u2 23.12.2022 SB2022122001
SB2023022363
SB2023100957
and 1 more
#VU70432 - Heap-based Buffer Overflow
CVE-2022-23537
CWE-122 High
No
No
1:16.28.0~dfsg-0+deb11u2 20.12.2022 SB2022122001
SB2023022363
SB2023100957
and 1 more
#VU69829 - Integer underflow
CVE-2022-37325
CWE-191 Medium
No
No
1:16.28.0~dfsg-0+deb11u2 02.12.2022 SB2022120212
SB2023022363
#VU69828 - Improper Privilege Management
CVE-2022-42706
CWE-269 Low
No
No
1:16.28.0~dfsg-0+deb11u2 02.12.2022 SB2022120212
SB2023022363
#VU69827 - Use After Free
CVE-2022-42705
CWE-416 Low
No
No
1:16.28.0~dfsg-0+deb11u2 02.12.2022 SB2022120212
SB2023022363
#VU69571 - Stack-based buffer overflow
CVE-2022-31031
CWE-121 High
No
No
1:16.28.0~dfsg-0+deb11u2 24.11.2022 SB2022111410
SB2022112411
SB2023022363
and 2 more
#VU69270 - Memory corruption
CVE-2022-39244
CWE-119 High
No
No
1:16.28.0~dfsg-0+deb11u2 14.11.2022 SB2022111410
SB2022112411
SB2023022363
and 2 more
#VU69269 - Cleartext Transmission of Sensitive Information
CVE-2022-39269
CWE-319 Medium
No
No
1:16.28.0~dfsg-0+deb11u2 14.11.2022 SB2022111410
SB2022112411
SB2023022363
#VU63102 - Heap-based Buffer Overflow
CVE-2022-24793
CWE-122 High
No
No
1:16.28.0~dfsg-0+deb11u1 12.05.2022 SB2022031514
SB2022112259
SB2022112411
and 2 more
#VU63101 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-24792
CWE-835 Medium
No
No
1:16.28.0~dfsg-0+deb11u1 12.05.2022 SB2022031514
SB2022112259
SB2022112411
#VU63100 - Out-of-bounds write
CVE-2022-24786
CWE-787 High
No
No
1:16.28.0~dfsg-0+deb11u1 12.05.2022 SB2022031514
SB2022112259
SB2022112411
#VU63096 - Stack-based buffer overflow
CVE-2022-24764
CWE-121 High
No
No
1:16.28.0~dfsg-0+deb11u1 12.05.2022 SB2022031514
SB2022112259
SB2022112411
and 2 more
#VU63094 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-24763
CWE-835 Medium
No
No
1:16.28.0~dfsg-0+deb11u1 12.05.2022 SB2022031514
SB2022112259
SB2022112411
and 2 more
#VU62391 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-26651
CWE-89 High
No
No
1:16.28.0~dfsg-0+deb11u1 19.04.2022 SB2022041930
SB2022112259
#VU62390 - Server-Side Request Forgery (SSRF)
CVE-2022-26499
CWE-918 Medium
No
No
1:16.28.0~dfsg-0+deb11u1 19.04.2022 SB2022041930
SB2022112259
#VU62355 - Resource exhaustion
CVE-2022-26498
CWE-400 Medium
No
No
1:16.28.0~dfsg-0+deb11u1 15.04.2022 SB2022041516
SB2022112259
#VU60953 - Stack-based buffer overflow
CVE-2021-43300
CWE-121 High
No
No
1:16.28.0~dfsg-0+deb11u1 02.03.2022 SB2022030212
SB2022112259
SB2023100957
and 2 more
#VU60862 - Use After Free
CVE-2022-23608
CWE-416 High
No
No
1:16.28.0~dfsg-0+deb11u1 24.02.2022 SB2022022414
SB2022030601
SB2022112259
and 3 more
#VU60857 - Integer overflow
CVE-2021-37706
CWE-190 High
No
No
1:16.28.0~dfsg-0+deb11u1 24.02.2022 SB2022022414
SB2022030601
SB2022112259
and 4 more


Showing elements 1 - 20 out of 35