{"$ref":"https://www.cert.ssi.gouv.fr/openapi.json","affected_systems":[{"description":"versions ant\u00e9rieures \u00e0 Asterisk Open Source 10.4.1 ;","product":{"name":"Asterisk","vendor":{"name":"Asterisk","scada":false}}},{"description":"versions ant\u00e9rieures \u00e0 Asterisk Open Source 1.8.12.1.","product":{"name":"Asterisk","vendor":{"name":"Asterisk","scada":false}}},{"description":"Versions ant\u00e9rieures \u00e0 Certified Asterisk 1.8.11-cert2 ;","product":{"name":"Certified Asterisk","vendor":{"name":"Asterisk","scada":false}}}],"affected_systems_content":null,"content":"## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l'\u00e9diteur pour l'obtention des\ncorrectifs (cf. section Documentation).\n","cves":[{"name":"CVE-2012-2948","url":"https://www.cve.org/CVERecord?id=CVE-2012-2948"},{"name":"CVE-2012-2947","url":"https://www.cve.org/CVERecord?id=CVE-2012-2947"}],"links":[{"title":"Bulletin de s\u00e9curit\u00e9 AST-2012-007 du 29 mai 2012 :","url":"http://downloads.asterisk.org/pub/security/AST-2012-007.html"},{"title":"Bulletin de s\u00e9curit\u00e9 AST-2012-008 du 29 mai 2012 :","url":"http://downloads.asterisk.org/pub/security/AST-2012-008.html"}],"reference":"CERTA-2012-AVI-298","revisions":[{"description":"version initiale.","revision_date":"2012-05-29T00:00:00.000000"}],"risks":[{"description":"Ex\u00e9cution de code arbitraire \u00e0 distance"},{"description":"D\u00e9ni de service"}],"summary":"Deux vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 corrig\u00e9es dans <span\nclass=\"textit\">Asterisk</span>. Une concerne le canal <span\nclass=\"textit\">IAX2</span> et peut \u00eatre exploit\u00e9e \u00e0 distance pour\nex\u00e9cuter du code arbitraire. La deuxi\u00e8me est un d\u00e9r\u00e9f\u00e9rencement de\npointeur nul, seul un d\u00e9ni de service peut \u00eatre provoqu\u00e9.\n","title":"Vuln\u00e9rabilit\u00e9s dans Asterisk","vendor_advisories":[{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 Asterisk AST-2012-007 du 29 mai 2012","url":null},{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 Asterisk AST-2012-008 du 29 mai 2012","url":null}]}
