PT-2007-6755 · Grandstream · Grandstream Ht-488
Publicado
2007-11-01
·
Atualizado
2017-07-29
·
CVE-2007-5788
CVSS v2.0
7.1
Alta
| Vetor | AV:N/AC:M/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Grandstream HT-488 version 0.1
Description
The issue is related to a buffer overflow in the SIP parser, which can be triggered by remote attackers sending a crafted SIP INVITE message. This can cause a denial of service, resulting in the device crashing.
Recommendations
For Grandstream HT-488 version 0.1, consider disabling the SIP parser until a patch is available to prevent remote attackers from sending crafted SIP INVITE messages. Restrict access to the device to minimize the risk of exploitation.
Correção
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Grandstream Ht-488