sngrep 1.8.4 及更早版本在 SIP 属性格式化例程中存在堆栈缓冲区溢出漏洞,当头部值超过 255 字节的缓冲区限制时触发。攻击者可以构造包含超大 Call-ID、X-Call-ID 或其他头部字段的恶意 SIP 数据包,以在数据包解析和渲染过程中导致程序崩溃或执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet