Логотип exploitDog
bind: "CVE-2022-24754"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2022-24754"

Количество 5

Количество 5

ubuntu логотип

CVE-2022-24754

больше 3 лет назад

PJSIP is a free and open source multimedia communication library written in C language. In versions prior to and including 2.12 PJSIP there is a stack-buffer overflow vulnerability which only impacts PJSIP users who accept hashed digest credentials (credentials with data_type `PJSIP_CRED_DATA_DIGEST`). This issue has been patched in the master branch of the PJSIP repository and will be included with the next release. Users unable to upgrade need to check that the hashed digest data length must be equal to `PJSIP_MD5STRLEN` before passing to PJSIP.

CVSS3: 8.5
EPSS: Низкий
nvd логотип

CVE-2022-24754

больше 3 лет назад

PJSIP is a free and open source multimedia communication library written in C language. In versions prior to and including 2.12 PJSIP there is a stack-buffer overflow vulnerability which only impacts PJSIP users who accept hashed digest credentials (credentials with data_type `PJSIP_CRED_DATA_DIGEST`). This issue has been patched in the master branch of the PJSIP repository and will be included with the next release. Users unable to upgrade need to check that the hashed digest data length must be equal to `PJSIP_MD5STRLEN` before passing to PJSIP.

CVSS3: 8.5
EPSS: Низкий
debian логотип

CVE-2022-24754

больше 3 лет назад

PJSIP is a free and open source multimedia communication library writt ...

CVSS3: 8.5
EPSS: Низкий
fstec логотип

BDU:2022-03168

больше 3 лет назад

Уязвимость реализации функции pjsip_auth_create_digest() мультимедийной коммуникационной библиотеки PJSIP, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

CVSS3: 8.5
EPSS: Низкий
redos логотип

ROS-20220518-03

около 3 лет назад

Множественные уязвимости pjproject

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-24754

PJSIP is a free and open source multimedia communication library written in C language. In versions prior to and including 2.12 PJSIP there is a stack-buffer overflow vulnerability which only impacts PJSIP users who accept hashed digest credentials (credentials with data_type `PJSIP_CRED_DATA_DIGEST`). This issue has been patched in the master branch of the PJSIP repository and will be included with the next release. Users unable to upgrade need to check that the hashed digest data length must be equal to `PJSIP_MD5STRLEN` before passing to PJSIP.

CVSS3: 8.5
0%
Низкий
больше 3 лет назад
nvd логотип
CVE-2022-24754

PJSIP is a free and open source multimedia communication library written in C language. In versions prior to and including 2.12 PJSIP there is a stack-buffer overflow vulnerability which only impacts PJSIP users who accept hashed digest credentials (credentials with data_type `PJSIP_CRED_DATA_DIGEST`). This issue has been patched in the master branch of the PJSIP repository and will be included with the next release. Users unable to upgrade need to check that the hashed digest data length must be equal to `PJSIP_MD5STRLEN` before passing to PJSIP.

CVSS3: 8.5
0%
Низкий
больше 3 лет назад
debian логотип
CVE-2022-24754

PJSIP is a free and open source multimedia communication library writt ...

CVSS3: 8.5
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2022-03168

Уязвимость реализации функции pjsip_auth_create_digest() мультимедийной коммуникационной библиотеки PJSIP, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

CVSS3: 8.5
0%
Низкий
больше 3 лет назад
redos логотип
ROS-20220518-03

Множественные уязвимости pjproject

около 3 лет назад

Уязвимостей на страницу