PT-2021-23092 · Unknown+1 · Freeswitch+1

Alfredfarrugia

+2

·

Published

2021-10-25

·

Updated

2023-10-08

·

CVE-2021-41105

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions FreeSWITCH versions prior to 1.10.7
Description The issue allows remote attackers to terminate calls by flooding a media port handling SRTP traffic with specially crafted SRTP packets, leading to denial of service. This can be done continuously, denying encrypted calls during the attack. The call disconnection occurs due to a hard-coded threshold of 100 SRTP errors in the source file switch rtp.c. The attack does not require authentication or any special foothold in the caller's or the callee's network. This issue was reproduced in both SIP and WebRTC environments using the SDES and DTLS key exchange mechanisms, respectively.
Recommendations For versions prior to 1.10.7, update to version 1.10.7 to resolve the issue. As a temporary workaround, consider restricting access to the switch rtp.c file or disabling the SRTP functionality until a patch is applied. Avoid using the SRTP protocol in sensitive environments until the issue is resolved.

Exploit

Fix

DoS

RCE

Weakness Enumeration

Related Identifiers

ALT-PU-2021-3374
ALT-PU-2021-3448
ALT-PU-2023-5726
CVE-2021-41105
GHSA-JH42-PRPH-GP36

Affected Products

Alt Linux
Freeswitch