PT-2023-21557 · Opensips · Opensis
Alfred Farrugia
+1
·
Published
2023-03-15
·
Updated
2023-03-21
·
CVE-2023-28097
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
OpenSIPS versions prior to 3.1.9 and 3.2.6
Description
OpenSIPS is a Session Initiation Protocol (SIP) server implementation. A malformed SIP message containing a large
Content-Length value and a specially crafted Request-URI causes a segmentation fault in OpenSIPS. This issue occurs when a large amount of shared memory using the -m flag was allocated to OpenSIPS. The only workaround is to guarantee that the Content-Length value of input messages is never larger than 2147483647.Recommendations
For versions prior to 3.1.9, update to version 3.1.9 or later.
For versions prior to 3.2.6, update to version 3.2.6 or later.
As a temporary workaround, consider guaranteeing that the
Content-Length value of input messages is never larger than 2147483647 until a patch is available.Exploit
Fix
Integer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Opensis