SIPp 版本 3.7.7 及更早版本中存在一个缓冲区溢出漏洞,该漏洞位于 函数中,发生在处理包含 2049 字节或更长 tag 参数的 SIP To 头时。经过身份验证的远程攻击者可以发送带有超大 tag 参数的构造 SIP 消息,从而溢出静态缓冲区,导致进程崩溃。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-90780 | 7.5 HIGH | SIPp through 3.7.7 Buffer Overflow via Oversized SIP Header Content |
| CVE-2026-90779 | 7.5 HIGH | SIPp through 3.7.7 Stack Buffer Overflow via createAuthHeader Algorithm Parameter |
No comments yet