The channel driver in Asterisk before 1.2.17 and 1.4.x before 1.4.2 allows remote attackers to cause a denial of service (crash) via a SIP INVITE message with an SDP containing one valid and one invalid IP address.
Get an AI-powered plain-language explanation of this vulnerability and remediation steps.
Login to generate AI explanation32 reference(s) from NVD