PT-2023-23716 · Sofia-Sip+3 · Sofia-Sip+3

Andywolk

·

Publicado

2023-05-26

·

Atualizado

2025-08-12

·

CVE-2023-32307

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Sofia-SIP versions prior to 1.13.15
Description Sofia-SIP is an open-source SIP User-Agent library, compliant with the IETF RFC3261 specification. Several potential heap-over-flow and integer-overflow vulnerabilities were found in stun parse attr error code and stun parse attr uint32 due to the lack of attributes length check when Sofia-SIP handles STUN packets. The previous patch fixed the vulnerability when attr type did not match the enum value, but there are also vulnerabilities in the handling of other valid cases. The OOB read and integer-overflow made by an attacker may lead to crash, high consumption of memory or even other more serious consequences.
Recommendations To resolve the issue, upgrade to version 1.13.15 or later. As a temporary workaround, consider restricting the handling of STUN packets to minimize the risk of exploitation. Avoid using the stun parse attr error code and stun parse attr uint32 functions until the issue is resolved.

Exploit

Correção

Integer Overflow

Memory Corruption

Heap Based Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2025-09871
CVE-2023-32307
DLA-3441-1
DSA-5431-1
GHSA-RM4C-CCVF-FF9C
MGASA-2023-0209
USN-6448-1

Produtos afetados

Linuxmint
Red Os
Sofia-Sip
Ubuntu