CVE-2013-2238

NameCVE-2013-2238
DescriptionMultiple buffer overflows in the switch_perform_substitution function in switch_regex.c in FreeSWITCH 1.2 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to the index and substituted variables.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs389591

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
freeswitchITP389591

Notes

https://www.openwall.com/lists/oss-security/2013/07/01/11
https://github.com/signalwire/freeswitch/commit/c2c8fba14a0352dfeecf31a0f818d83f83a93a85

Search for package or bug name: Reporting problems