CVE Database · CVE-2017-14098
CVSS v3.1
N/A
EPSS
50.05%
Published
Sep 2, 2017
Modified
May 12, 2026
Public PoC / Exploit
All weaponized →No public PoC or exploit code indexed for this CVE.
Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
In the pjsip channel driver (res_pjsip) in Asterisk 13.x before 13.17.1 and 14.x before 14.6.1, a carefully crafted tel URI in a From, To, or Contact header could cause Asterisk to crash.
Weaknesses (CWE)
Affected Products (87)
References (10)
...and 37 more