Логотип exploitDog
bind: "CVE-2022-24754"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2022-24754"

Количество 5

Количество 5

ubuntu логотип

CVE-2022-24754

почти 4 года назад

PJSIP is a free and open source multimedia communication library written in C language. In versions prior to and including 2.12 PJSIP there is a stack-buffer overflow vulnerability which only impacts PJSIP users who accept hashed digest credentials (credentials with data_type `PJSIP_CRED_DATA_DIGEST`). This issue has been patched in the master branch of the PJSIP repository and will be included with the next release. Users unable to upgrade need to check that the hashed digest data length must be equal to `PJSIP_MD5STRLEN` before passing to PJSIP.

CVSS3: 8.5
EPSS: Низкий
nvd логотип

CVE-2022-24754

почти 4 года назад

PJSIP is a free and open source multimedia communication library written in C language. In versions prior to and including 2.12 PJSIP there is a stack-buffer overflow vulnerability which only impacts PJSIP users who accept hashed digest credentials (credentials with data_type `PJSIP_CRED_DATA_DIGEST`). This issue has been patched in the master branch of the PJSIP repository and will be included with the next release. Users unable to upgrade need to check that the hashed digest data length must be equal to `PJSIP_MD5STRLEN` before passing to PJSIP.

CVSS3: 8.5
EPSS: Низкий
debian логотип

CVE-2022-24754

почти 4 года назад

PJSIP is a free and open source multimedia communication library writt ...

CVSS3: 8.5
EPSS: Низкий
fstec логотип

BDU:2022-03168

почти 4 года назад

Уязвимость реализации функции pjsip_auth_create_digest() мультимедийной коммуникационной библиотеки PJSIP, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

CVSS3: 8.5
EPSS: Низкий
redos логотип

ROS-20220518-03

больше 3 лет назад

Множественные уязвимости pjproject

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-24754

PJSIP is a free and open source multimedia communication library written in C language. In versions prior to and including 2.12 PJSIP there is a stack-buffer overflow vulnerability which only impacts PJSIP users who accept hashed digest credentials (credentials with data_type `PJSIP_CRED_DATA_DIGEST`). This issue has been patched in the master branch of the PJSIP repository and will be included with the next release. Users unable to upgrade need to check that the hashed digest data length must be equal to `PJSIP_MD5STRLEN` before passing to PJSIP.

CVSS3: 8.5
0%
Низкий
почти 4 года назад
nvd логотип
CVE-2022-24754

PJSIP is a free and open source multimedia communication library written in C language. In versions prior to and including 2.12 PJSIP there is a stack-buffer overflow vulnerability which only impacts PJSIP users who accept hashed digest credentials (credentials with data_type `PJSIP_CRED_DATA_DIGEST`). This issue has been patched in the master branch of the PJSIP repository and will be included with the next release. Users unable to upgrade need to check that the hashed digest data length must be equal to `PJSIP_MD5STRLEN` before passing to PJSIP.

CVSS3: 8.5
0%
Низкий
почти 4 года назад
debian логотип
CVE-2022-24754

PJSIP is a free and open source multimedia communication library writt ...

CVSS3: 8.5
0%
Низкий
почти 4 года назад
fstec логотип
BDU:2022-03168

Уязвимость реализации функции pjsip_auth_create_digest() мультимедийной коммуникационной библиотеки PJSIP, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

CVSS3: 8.5
0%
Низкий
почти 4 года назад
redos логотип
ROS-20220518-03

Множественные уязвимости pjproject

больше 3 лет назад

Уязвимостей на страницу