VYPR
Medium severity6.5NVD Advisory· Published Aug 28, 2025· Updated Jun 17, 2026

CVE-2025-54995

CVE-2025-54995

Description

Asterisk is an open source private branch exchange and telephony toolkit. Prior to versions 18.26.4 and 18.9-cert17, RTP UDP ports and internal resources can leak due to a lack of session termination. This could result in leaks and resource exhaustion. This issue has been patched in versions 18.26.4 and 18.9-cert17.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

23
  • cpe:2.3:a:sangoma:asterisk:*:*:*:*:*:*:*:*
    Range: <18.26.4
  • cpe:2.3:a:sangoma:certified_asterisk:*:*:*:*:*:*:*:*+ 19 more
    • cpe:2.3:a:sangoma:certified_asterisk:*:*:*:*:*:*:*:*range: <18.9
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert1-rc1:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert10:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert11:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert12:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert13:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert14:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert15:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert16:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert1:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert2:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert3:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert4:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert5:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert6:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert7:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert8-rc1:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert8-rc2:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert8:*:*:*:*:*:*
    • cpe:2.3:a:sangoma:certified_asterisk:18.9:cert9:*:*:*:*:*:*
  • Asterisk/Asteriskllm-fuzzy2 versions
    <18.26.4, <18.9-cert17+ 1 more
    • (no CPE)range: <18.26.4, <18.9-cert17
    • (no CPE)range: < 18.26.4

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.