RSS   Vulnerabilities for 'Resiprocate'   RSS

2018-07-16
 
CVE-2018-12584

CWE-119
 

 
The ConnectionBase::preparseNewBytes function in resip/stack/ConnectionBase.cxx in reSIProcate through 1.10.2 allows remote attackers to cause a denial of service (buffer overflow) or possibly execute arbitrary code when TLS communication is enabled.

 
2017-08-18
 
CVE-2017-9454

 

 
Buffer overflow in the ares_parse_a_reply function in the embedded ares library in ReSIProcate before 1.12.0 allows remote attackers to cause a denial of service (out-of-bounds-read) via a crafted DNS response.

 
2017-07-22
 
CVE-2017-11521

CWE-400
 

 
The SdpContents::Session::Medium::parse function in resip/stack/SdpContents.cxx in reSIProcate 1.10.2 allows remote attackers to cause a denial of service (memory consumption) by triggering many media connections.

 
2008-07-18
 
CVE-2008-3210

CWE-20
 

 
rutil/dns/DnsStub.cxx in ReSIProcate 1.3.2, as used by repro, allows remote attackers to cause a denial of service (daemon crash) via a SIP (1) INVITE or (2) OPTIONS message with a long domain name in a request URI, which triggers an assert error.

 
2008-07-17
 
CVE-2008-3199

CWE-20
 

 
Multiple unspecified vulnerabilities in ReSIProcate before 1.3.4 allow remote attackers to cause a denial of service (stack consumption) via unknown network traffic with a large "bytes-in-memory/bytes-on-wire ratio."

 


Copyright 2024, cxsecurity.com

 

Back to Top