VULNERABILITY INTELLIGENCE

CVE-2003-0761

CVSS score7.5 HIGH
EPSS probability3.99%
CISA KEVNot currently listed
Published2003-09-17
Last modified2026-06-16
CVSS vectorAV:N/AC:L/Au:N/C:P/I:P/A:P

Description

Buffer overflow in the get_msg_text of chan_sip.c in the Session Initiation Protocol (SIP) protocol implementation for Asterisk releases before August 15, 2003, allows remote attackers to execute arbitrary code via certain (1) MESSAGE or (2) INFO requests.

Primary references