{"id":"DEBIAN-CVE-2012-2948","details":"chan_skinny.c in the Skinny (aka SCCP) channel driver in Certified Asterisk 1.8.11-cert before 1.8.11-cert2 and Asterisk Open Source 1.8.x before 1.8.12.1 and 10.x before 10.4.1 allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) by closing a connection in off-hook mode.","modified":"2026-04-28T20:11:59.105961Z","published":"2012-06-02T15:55:01.027Z","upstream":["CVE-2012-2948"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2012-2948"}],"affected":[{"package":{"name":"asterisk","ecosystem":"Debian:11","purl":"pkg:deb/debian/asterisk?arch=source"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.8.13.0~dfsg-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2012-2948.json"}}],"schema_version":"1.7.5"}