Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Rnatella

#25985de 53,633
9.8CVSS total
Vulnerabilidades · 1
PT-2023-11761
9.8
2023-03-15
Unknown · Kamailio Sip · CVE-2020-27507
**Name of the Vulnerable Software and Affected Versions** Kamailio SIP versions prior to 5.5.0 **Description** The issue is related to the mishandling of INVITE requests with duplicated fields and overlength tags by the Kamailio SIP server, leading to a buffer overflow. This can cause the server to crash or potentially have other unspecified impacts. **Recommendations** For versions prior to 5.5.0, update to version 5.5.0 or later to resolve the issue. As a temporary workaround, consider restricting access to INVITE requests with duplicated fields and overlength tags until a patch is applied.