CVE-2025-54995

Asterisk is an open source private branch exchange and telephony toolkit. Prior to versions 18.26.4 and 18.9-cert17, RTP UDP ports and internal resources can leak due to a lack of session termination. This could result in leaks and resource exhaustion. This issue has been patched in versions 18.26.4 and 18.9-cert17.
Configurations

No configuration.

History

28 Aug 2025, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-28 15:16

Updated : 2025-08-29 16:24


NVD link : CVE-2025-54995

Mitre link : CVE-2025-54995

CVE.ORG link : CVE-2025-54995


JSON object : View

Products Affected

No product.

CWE
CWE-400

Uncontrolled Resource Consumption

CWE-1286

Improper Validation of Syntactic Correctness of Input