Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-32942

Опубликовано: 20 мар. 2026
Источник: debian
EPSS Низкий

Описание

PJSIP is a free and open source multimedia communication library written in C. Versions 2.16 and below contain a heap use-after-free vulnerability in the ICE session that occurs when there are race conditions between session destruction and the callbacks. This issue has been fixed in version 2.17.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pjprojectremovedpackage
asteriskunfixedpackage

Примечания

  • https://github.com/pjsip/pjproject/security/advisories/GHSA-g88q-c2hm-q7p7

  • https://github.com/pjsip/pjproject/issues/1451

  • https://github.com/pjsip/pjproject/commit/c9caceddabda7f18337b2a82d25d65f6224b450a

EPSS

Процентиль: 23%
0.00319
Низкий

Связанные уязвимости

CVSS3: 8.1
ubuntu
5 месяцев назад

PJSIP is a free and open source multimedia communication library written in C. Versions 2.16 and below contain a heap use-after-free vulnerability in the ICE session that occurs when there are race conditions between session destruction and the callbacks. This issue has been fixed in version 2.17.

CVSS3: 8.1
nvd
5 месяцев назад

PJSIP is a free and open source multimedia communication library written in C. Versions 2.16 and below contain a heap use-after-free vulnerability in the ICE session that occurs when there are race conditions between session destruction and the callbacks. This issue has been fixed in version 2.17.

EPSS

Процентиль: 23%
0.00319
Низкий