Security Advisory

CVE-2018-7287

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-02-22 00:00:00
Last updated 2024-08-05 06:24:11
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

An issue was discovered in res_http_websocket.c in Asterisk 15.x through 15.2.1. If the HTTP server is enabled (default is disabled), WebSocket payloads of size 0 are mishandled (with a busy loop).