PT-2024-26006 · Librtp.So · Librtp.So

Hackpotato

·

Published

2024-07-02

·

Updated

2024-07-02

·

CVE-2024-34591

CVSS v3.1

5.3

Medium

VectorAV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions librtp.so versions prior to SMR Jul-2024 Release 1
Description The issue is related to improper input validation when parsing item data from an RTCP SDES packet, which can be exploited by remote attackers to cause a temporary denial of service. This requires user interaction to trigger the issue.
Recommendations For versions prior to SMR Jul-2024 Release 1, update to the SMR Jul-2024 Release 1 or later to resolve the issue.

Fix

Related Identifiers

CVE-2024-34591

Affected Products

Librtp.So