{"id":"CVE-2019-13161","details":"An issue was discovered in Asterisk Open Source through 13.27.0, 14.x and 15.x through 15.7.2, and 16.x through 16.4.0, and Certified Asterisk through 13.21-cert3. A pointer dereference in chan_sip while handling SDP negotiation allows an attacker to crash Asterisk when handling an SDP answer to an outgoing T.38 re-invite. To exploit this vulnerability an attacker must cause the chan_sip module to send a T.38 re-invite request to them. Upon receipt, the attacker must send an SDP answer containing both a T.38 UDPTL stream and another media stream containing only a codec (which is not permitted according to the chan_sip configuration).","modified":"2026-02-03T07:03:35.762831Z","published":"2019-07-12T20:15:11.127Z","references":[{"type":"ADVISORY","url":"http://downloads.digium.com/pub/security/AST-2019-003.html"},{"type":"ADVISORY","url":"https://issues.asterisk.org/jira/browse/ASTERISK-28465"},{"type":"ADVISORY","url":"https://lists.debian.org/debian-lts-announce/2019/11/msg00038.html"},{"type":"ADVISORY","url":"https://lists.debian.org/debian-lts-announce/2022/04/msg00001.html"},{"type":"REPORT","url":"https://issues.asterisk.org/jira/browse/ASTERISK-28465"},{"type":"ARTICLE","url":"https://lists.debian.org/debian-lts-announce/2019/11/msg00038.html"},{"type":"ARTICLE","url":"https://lists.debian.org/debian-lts-announce/2022/04/msg00001.html"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/asterisk/asterisk","events":[{"introduced":"85335355efb2d7914a1fe20ed31afcef15fd210c"},{"fixed":"66fcb3499bd543d634d1ab161c81c42ba712def1"},{"introduced":"a65908f83e2f17a3aca7eb39c8e06045aca02674"},{"fixed":"79e42ad28bb54b777c82daebd1f2262cb66a97b6"},{"introduced":"d4cc63728def7ca06ad3f70547de87bc5c9ef7c0"},{"fixed":"c2d9780d3d91fb44804df0db829712cff0340e44"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-13161.json"}}],"schema_version":"1.7.3","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H"}]}