{"id":"CVE-2021-32558","details":"An issue was discovered in Sangoma Asterisk 13.x before 13.38.3, 16.x before 16.19.1, 17.x before 17.9.4, and 18.x before 18.5.1, and Certified Asterisk before 16.8-cert10. If the IAX2 channel driver receives a packet that contains an unsupported media format, a crash can occur.","modified":"2026-02-23T01:49:20.879562Z","published":"2021-07-30T14:15:16.910Z","references":[{"type":"ADVISORY","url":"http://packetstormsecurity.com/files/163639/Asterisk-Project-Security-Advisory-AST-2021-008.html"},{"type":"ADVISORY","url":"http://seclists.org/fulldisclosure/2021/Jul/49"},{"type":"ADVISORY","url":"https://downloads.asterisk.org/pub/security/AST-2021-008.html"},{"type":"ADVISORY","url":"https://issues.asterisk.org/jira/browse/ASTERISK-29392"},{"type":"ADVISORY","url":"https://lists.debian.org/debian-lts-announce/2021/08/msg00005.html"},{"type":"ADVISORY","url":"https://www.debian.org/security/2021/dsa-4999"},{"type":"REPORT","url":"https://issues.asterisk.org/jira/browse/ASTERISK-29392"},{"type":"FIX","url":"http://packetstormsecurity.com/files/163639/Asterisk-Project-Security-Advisory-AST-2021-008.html"},{"type":"FIX","url":"http://seclists.org/fulldisclosure/2021/Jul/49"},{"type":"FIX","url":"https://downloads.asterisk.org/pub/security/AST-2021-008.html"},{"type":"FIX","url":"https://issues.asterisk.org/jira/browse/ASTERISK-29392"},{"type":"ARTICLE","url":"http://seclists.org/fulldisclosure/2021/Jul/49"},{"type":"ARTICLE","url":"https://lists.debian.org/debian-lts-announce/2021/08/msg00005.html"},{"type":"EVIDENCE","url":"https://issues.asterisk.org/jira/browse/ASTERISK-29392"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/asterisk/asterisk","events":[{"introduced":"2c1bba3cbec008c8ce35c78a2c79f9f207ea58bc"},{"fixed":"226868d1139af566c481265ef9657a1b33aa065e"},{"introduced":"5ffe12b6ef30cd503f85d75745fd8d9c2cfafe47"},{"fixed":"3e17d375e4778e8c793bdcbf181e9547968997e2"},{"introduced":"85335355efb2d7914a1fe20ed31afcef15fd210c"},{"fixed":"4b05b9b4a8472c8f5703d53d29f692c04c1fce98"},{"introduced":"a65908f83e2f17a3aca7eb39c8e06045aca02674"},{"fixed":"faac96f75aa728925a7af0eed3fe3339cec80628"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-32558.json"}}],"schema_version":"1.7.3","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}