VULNERABILITY INTELLIGENCE
CVE-2003-0761
CVSS score7.5 HIGH
EPSS probability3.99%
CISA KEVNot currently listed
Published2003-09-17
Last modified2026-06-16
CVSS vectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Description
Buffer overflow in the get_msg_text of chan_sip.c in the Session Initiation Protocol (SIP) protocol implementation for Asterisk releases before August 15, 2003, allows remote attackers to execute arbitrary code via certain (1) MESSAGE or (2) INFO requests.
Primary references
- cve@mitre.org — Exploit, Vendor Advisory
- af854a3a-2127-422b-91ae-364da2661108 — Exploit, Vendor Advisory