VOIP: Digium Asterisk Multiple Products IAX2 Handshake Denial of Service
This signature detects attempts to exploit a known vulnerability against multiple Digium Asterisk products. A successful attack can result in a denial-of-service condition.
Extended Description
Asterisk is prone to a remote denial-of-service vulnerability caused by a flaw in the IAX2 protocol. Successful exploits result in packet-amplification attacks. Malicious users can cause Asterisk to send large numbers of UDP datagrams to arbitrary addresses, potentially denying service to both the Asterisk service and networks that may become flooded.
Affected Products
Asterisk asterisk_business_edition,Asterisk asterisk
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Red_hat
Asterisk
Debian
Gentoo
4.3