Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Kamailio Core: TCP Data Processing Vulnerability
Vulnerability Description
Kamailio is an open source implementation of a SIP Signaling Server. Prior to 6.1.1, 6.0.6, and 5.8.8, an out-of-bounds access in the core of Kamailio (formerly OpenSER and SER) allows remote attackers to cause a denial of service (process crash) via a specially crafted data packet sent over TCP. The issue impacts Kamailio instances having TCP or TLS listeners. This vulnerability is fixed in 5.1.1, 6.0.6, and 5.8.8.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
内存缓冲区边界内操作的限制不恰当
Vulnerability Title
Kamailio 缓冲区错误漏洞
Vulnerability Description
Kamailio是Kamailio开源的一个 SIP 信令服务器的开源实现。 Kamailio 6.1.1之前版本、6.0.6之前版本和5.8.8之前版本存在缓冲区错误漏洞,该漏洞源于越界访问,可能导致拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A