Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Rnatella

#24129of 53,632
9.8Total CVSS
Vulnerabilities · 1
PT-2023-11761
9.8
2023-03-15
Unknown · Kamailio Sip · CVE-2020-27507
**Name of the Vulnerable Software and Affected Versions** Kamailio SIP versions prior to 5.5.0 **Description** The issue is related to the mishandling of INVITE requests with duplicated fields and overlength tags by the Kamailio SIP server, leading to a buffer overflow. This can cause the server to crash or potentially have other unspecified impacts. **Recommendations** For versions prior to 5.5.0, update to version 5.5.0 or later to resolve the issue. As a temporary workaround, consider restricting access to INVITE requests with duplicated fields and overlength tags until a patch is applied.