Vulnerability Details CVE-2020-35776
A buffer overflow in res_pjsip_diversion.c in Sangoma Asterisk versions 13.38.1, 16.15.1, 17.9.1, and 18.1.1 allows remote attacker to crash Asterisk by deliberately misusing SIP 181 responses.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 28.9%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 4.3
Products affected by CVE-2020-35776
-
cpe:2.3:a:digium:asterisk:13.0.0
-
cpe:2.3:a:digium:asterisk:13.0.1
-
cpe:2.3:a:digium:asterisk:13.0.2
-
cpe:2.3:a:digium:asterisk:13.1.0
-
cpe:2.3:a:digium:asterisk:13.1.1
-
cpe:2.3:a:digium:asterisk:13.10.0
-
cpe:2.3:a:digium:asterisk:13.11.0
-
cpe:2.3:a:digium:asterisk:13.11.1
-
cpe:2.3:a:digium:asterisk:13.11.2
-
cpe:2.3:a:digium:asterisk:13.12
-
cpe:2.3:a:digium:asterisk:13.12.0
-
cpe:2.3:a:digium:asterisk:13.12.1
-
cpe:2.3:a:digium:asterisk:13.12.2
-
cpe:2.3:a:digium:asterisk:13.13
-
cpe:2.3:a:digium:asterisk:13.13.0
-
cpe:2.3:a:digium:asterisk:13.13.1
-
cpe:2.3:a:digium:asterisk:13.14.0
-
cpe:2.3:a:digium:asterisk:13.14.1
-
cpe:2.3:a:digium:asterisk:13.15.0
-
cpe:2.3:a:digium:asterisk:13.15.1
-
cpe:2.3:a:digium:asterisk:13.16.0
-
cpe:2.3:a:digium:asterisk:13.17.0
-
cpe:2.3:a:digium:asterisk:13.17.1
-
cpe:2.3:a:digium:asterisk:13.17.2
-
cpe:2.3:a:digium:asterisk:13.18.0
-
cpe:2.3:a:digium:asterisk:13.18.1
-
cpe:2.3:a:digium:asterisk:13.18.2
-
cpe:2.3:a:digium:asterisk:13.18.3
-
cpe:2.3:a:digium:asterisk:13.18.4
-
cpe:2.3:a:digium:asterisk:13.18.5
-
cpe:2.3:a:digium:asterisk:13.19.0
-
cpe:2.3:a:digium:asterisk:13.19.1
-
cpe:2.3:a:digium:asterisk:13.19.2
-
cpe:2.3:a:digium:asterisk:13.2.0
-
cpe:2.3:a:digium:asterisk:13.2.1
-
cpe:2.3:a:digium:asterisk:13.20.0
-
cpe:2.3:a:digium:asterisk:13.21.0
-
cpe:2.3:a:digium:asterisk:13.21.1
-
cpe:2.3:a:digium:asterisk:13.22.0
-
cpe:2.3:a:digium:asterisk:13.23.0
-
cpe:2.3:a:digium:asterisk:13.23.1
-
cpe:2.3:a:digium:asterisk:13.24.0
-
cpe:2.3:a:digium:asterisk:13.24.1
-
cpe:2.3:a:digium:asterisk:13.25.0
-
cpe:2.3:a:digium:asterisk:13.26.0
-
cpe:2.3:a:digium:asterisk:13.27.0
-
cpe:2.3:a:digium:asterisk:13.27.1
-
cpe:2.3:a:digium:asterisk:13.28.0
-
cpe:2.3:a:digium:asterisk:13.28.1
-
cpe:2.3:a:digium:asterisk:13.29.0
-
cpe:2.3:a:digium:asterisk:13.29.1
-
cpe:2.3:a:digium:asterisk:13.29.2
-
cpe:2.3:a:digium:asterisk:13.3.0
-
cpe:2.3:a:digium:asterisk:13.3.1
-
cpe:2.3:a:digium:asterisk:13.3.2
-
cpe:2.3:a:digium:asterisk:13.30.0
-
cpe:2.3:a:digium:asterisk:13.31.0
-
cpe:2.3:a:digium:asterisk:13.32.0
-
cpe:2.3:a:digium:asterisk:13.33.0
-
cpe:2.3:a:digium:asterisk:13.34.0
-
cpe:2.3:a:digium:asterisk:13.35.0
-
cpe:2.3:a:digium:asterisk:13.36.0
-
cpe:2.3:a:digium:asterisk:13.37.0
-
cpe:2.3:a:digium:asterisk:13.38.0
-
cpe:2.3:a:digium:asterisk:13.38.1
-
cpe:2.3:a:digium:asterisk:13.4.0
-
cpe:2.3:a:digium:asterisk:13.5.0
-
cpe:2.3:a:digium:asterisk:13.6.0
-
cpe:2.3:a:digium:asterisk:13.7.0
-
cpe:2.3:a:digium:asterisk:13.7.1
-
cpe:2.3:a:digium:asterisk:13.7.2
-
cpe:2.3:a:digium:asterisk:13.8.0
-
cpe:2.3:a:digium:asterisk:13.8.1
-
cpe:2.3:a:digium:asterisk:13.8.2
-
cpe:2.3:a:digium:asterisk:13.9.0
-
cpe:2.3:a:digium:asterisk:13.9.1
-
cpe:2.3:a:digium:asterisk:16.0.0
-
cpe:2.3:a:digium:asterisk:16.0.1
-
cpe:2.3:a:digium:asterisk:16.1.0
-
cpe:2.3:a:digium:asterisk:16.15.0
-
cpe:2.3:a:digium:asterisk:16.15.1
-
cpe:2.3:a:digium:asterisk:16.2.0
-
cpe:2.3:a:digium:asterisk:16.2.1
-
cpe:2.3:a:digium:asterisk:16.3.0
-
cpe:2.3:a:digium:asterisk:16.4.0
-
cpe:2.3:a:digium:asterisk:16.4.1
-
cpe:2.3:a:digium:asterisk:16.5.0
-
cpe:2.3:a:digium:asterisk:16.5.1
-
cpe:2.3:a:digium:asterisk:16.6.0
-
cpe:2.3:a:digium:asterisk:16.6.1
-
cpe:2.3:a:digium:asterisk:16.6.2
-
cpe:2.3:a:digium:asterisk:17.0.0
-
cpe:2.3:a:digium:asterisk:17.0.1
-
cpe:2.3:a:digium:asterisk:17.1.0
-
cpe:2.3:a:digium:asterisk:17.2.0
-
cpe:2.3:a:digium:asterisk:17.3.0
-
cpe:2.3:a:digium:asterisk:17.4.0
-
cpe:2.3:a:digium:asterisk:17.5.0
-
cpe:2.3:a:digium:asterisk:17.5.1
-
cpe:2.3:a:digium:asterisk:17.6.0
-
cpe:2.3:a:digium:asterisk:17.7.0
-
cpe:2.3:a:digium:asterisk:17.7.7
-
cpe:2.3:a:digium:asterisk:17.8.0
-
cpe:2.3:a:digium:asterisk:17.8.1
-
cpe:2.3:a:digium:asterisk:17.9.0
-
cpe:2.3:a:digium:asterisk:17.9.1
-
cpe:2.3:a:digium:asterisk:18.0
-
cpe:2.3:a:digium:asterisk:18.0.0
-
cpe:2.3:a:digium:asterisk:18.0.1
-
cpe:2.3:a:digium:asterisk:18.1.0
-
cpe:2.3:a:digium:asterisk:18.1.1