vulnerability

Alpine Linux: CVE-2024-35190: Incorrect Implementation of Authentication Algorithm

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
May 17, 2024
Added
Jun 6, 2024
Modified
Dec 5, 2025

Description

Asterisk is an open source private branch exchange and telephony toolkit. After upgrade to 18.23.0, ALL unauthorized SIP requests are identified as PJSIP Endpoint of local asterisk server. This vulnerability is fixed in 18.23.1, 20.8.1, and 21.3.1.

Solution

alpine-linux-upgrade-asterisk
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.