Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-73212

Опубликовано: 11 авг. 2026
Источник: redhat
CVSS3: 7.7
EPSS Низкий

Описание

Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.13.1, good_peer_addr() in src/server/ns_turn_server.c uses ioa_addr_in_range() in src/client/ns_turn_ioaddr.c without canonicalizing IPv4-compatible, 6to4, and 64:ff9b::/96 NAT64 address forms, allowing an authenticated RFC 6062 TCP CONNECT relay client to bypass an IPv4 denied-peer-ip range when the Coturn host has a useful translation route. This issue is fixed in version 4.13.1.

A flaw was found in Coturn. An authenticated client using the RFC 6062 TCP CONNECT relay path can bypass intended IPv4 denied-peer-ip range restrictions due to improper canonicalization of IPv4-compatible, 6to4, and NAT64 address forms. This vulnerability can lead to Server-Side Request Forgery (SSRF) and potentially remote code execution (RCE) within the internal network.

Отчет

Coturn is not shipped in any Red Hat product. The Fedora and EPEL community builds ship coturn version 4.17.2, which already includes the fix for this issue (fixed in 4.13.1) and are therefore not affected.

Меры по смягчению последствий

Upgrade to coturn version 4.13.1 or later.

Дополнительная информация

Статус:

Important
Дефект:
CWE-1389
https://bugzilla.redhat.com/show_bug.cgi?id=2514237coturn: Coturn: Server-Side Request Forgery and Remote Code Execution via IP address canonicalization bypass

EPSS

Процентиль: 20%
0.00282
Низкий

7.7 High

CVSS3

Связанные уязвимости

ubuntu
17 дней назад

Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.13.1, good_peer_addr() in src/server/ns_turn_server.c uses ioa_addr_in_range() in src/client/ns_turn_ioaddr.c without canonicalizing IPv4-compatible, 6to4, and 64:ff9b::/96 NAT64 address forms, allowing an authenticated RFC 6062 TCP CONNECT relay client to bypass an IPv4 denied-peer-ip range when the Coturn host has a useful translation route. This issue is fixed in version 4.13.1.

nvd
17 дней назад

Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.13.1, good_peer_addr() in src/server/ns_turn_server.c uses ioa_addr_in_range() in src/client/ns_turn_ioaddr.c without canonicalizing IPv4-compatible, 6to4, and 64:ff9b::/96 NAT64 address forms, allowing an authenticated RFC 6062 TCP CONNECT relay client to bypass an IPv4 denied-peer-ip range when the Coturn host has a useful translation route. This issue is fixed in version 4.13.1.

debian
17 дней назад

Coturn is a free open source implementation of TURN and STUN Server. P ...

EPSS

Процентиль: 20%
0.00282
Низкий

7.7 High

CVSS3