Asterisk Project Security Advisory – Two closely related stack based buffer overflows exist in the SIP/SDP handler of Asterisk, the vulnerabilities are very similar but exist as two separate unsafe function calls.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/56222/ASA-2007-010.txt
Source: https://packetstormsecurity.com/files/56222/ASA-2007-010.txt.html

