[FD] AST-2018-006: WebSocket frames with 0 sized payload causes DoS

2018-02-21 Thread Asterisk Security Team
Asterisk Project Security Advisory - AST-2018-006 ProductAsterisk SummaryWebSocket frames with 0 sized payload causes DoS Nature of Advisory Denial of Service

[FD] AST-2018-005: Crash when large numbers of TCP connections are closed suddenly

2018-02-21 Thread Asterisk Security Team
Asterisk Project Security Advisory - AST-2018-005 ProductAsterisk SummaryCrash when large numbers of TCP connections are closed suddenly

[FD] AST-2018-004: Crash when receiving SUBSCRIBE request

2018-02-21 Thread Asterisk Security Team
Asterisk Project Security Advisory - AST-2018-004 Product Asterisk Summary Crash when receiving SUBSCRIBE request Nature of Advisory Remote Crash

[FD] AST-2018-003: Crash with an invalid SDP fmtp attribute

2018-02-21 Thread Asterisk Security Team
Asterisk Project Security Advisory - AST-2018-003 ProductAsterisk SummaryCrash with an invalid SDP fmtp attribute Nature of Advisory Remote crash

[FD] AST-2018-002: Crash when given an invalid SDP media format description

2018-02-21 Thread Asterisk Security Team
Asterisk Project Security Advisory - AST-2018-002 ProductAsterisk SummaryCrash when given an invalid SDP media format description

[FD] AST-2018-001: Crash when receiving unnegotiated dynamic payload

2018-02-21 Thread Asterisk Security Team
Asterisk Project Security Advisory - AST-2018-001 Product Asterisk Summary Crash when receiving unnegotiated dynamic payload Nature of Advisory Remote Crash

[FD] [CORE-2017-0006] Trend Micro Email Encryption Gateway Multiple Vulnerabilities

2018-02-21 Thread Core Security Advisories Team
Core Security - Corelabs Advisory http://corelabs.coresecurity.com/ Trend Micro Email Encryption Gateway Multiple Vulnerabilities 1. *Advisory Information* Title: Trend Micro Email Encryption Gateway Multiple Vulnerabilities Advisory ID: CORE-2017-0006 Advisory URL:

[FD] SEC Consult SA-20180221-0 :: Hijacking of arbitrary miSafes Mi-Cam video baby monitors

2018-02-21 Thread SEC Consult Vulnerability Lab
We have published an accompanying blog post to this technical advisory with further information: https://www.sec-consult.com/en/blog/2018/02/internet-of-babies-when-baby-monitors-fail-to-be-smart/index.html SEC Consult Vulnerability Lab Security Advisory < 2018022