在 Kamailio 5.8.8、6.0.7、6.1.4 及 6.2.0-dev1 版本中发现了安全漏洞。受影响的组件是 CDP Diameter 接收器(CDP Diameter Receiver)中的 函数,位于源文件 中。通过执行特定操作,可能引发堆缓冲区溢出(heap-based buffer overflow)。该漏洞可被远程利用,且已有公开的利用代码(exploit)可供攻击者使用。将版本升级至 6.0.8 即可解决此问题。相关补丁的提交哈希值为: 、 (注:原文中重复列出了两个相同的哈希值 ,可能为笔
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | Kamailio | 5.8.0 |
cpe:2.3:a:kamailio:kamailio:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-94004 | 7.3 HIGH | DedeCMS mytag_js.php code injection |
| CVE-2026-93960 | 4.3 MEDIUM | Pixelfed OAuth Scope ApiV1Controller.php instancePeers missing authentication |
No comments yet