PT-2007-6755 · Grandstream · Grandstream Ht-488
Published
2007-11-01
·
Updated
2017-07-29
·
CVE-2007-5788
CVSS v2.0
7.1
High
| Vector | AV:N/AC:M/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Grandstream HT-488 version 0.1
Description
The issue is related to a buffer overflow in the SIP parser, which can be triggered by remote attackers sending a crafted SIP INVITE message. This can cause a denial of service, resulting in the device crashing.
Recommendations
For Grandstream HT-488 version 0.1, consider disabling the SIP parser until a patch is available to prevent remote attackers from sending crafted SIP INVITE messages. Restrict access to the device to minimize the risk of exploitation.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Grandstream Ht-488