Логотип exploitDog
bind:CVE-2024-3120
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-3120

Количество 5

Количество 5

ubuntu логотип

CVE-2024-3120

почти 2 года назад

A stack-buffer overflow vulnerability exists in all versions of sngrep since v1.4.1. The flaw is due to inadequate bounds checking when copying 'Content-Length' and 'Warning' headers into fixed-size buffers in the sip_validate_packet and sip_parse_extra_headers functions within src/sip.c. This vulnerability allows remote attackers to execute arbitrary code or cause a denial of service (DoS) via crafted SIP messages.

CVSS3: 9
EPSS: Низкий
nvd логотип

CVE-2024-3120

почти 2 года назад

A stack-buffer overflow vulnerability exists in all versions of sngrep since v1.4.1. The flaw is due to inadequate bounds checking when copying 'Content-Length' and 'Warning' headers into fixed-size buffers in the sip_validate_packet and sip_parse_extra_headers functions within src/sip.c. This vulnerability allows remote attackers to execute arbitrary code or cause a denial of service (DoS) via crafted SIP messages.

CVSS3: 9
EPSS: Низкий
debian логотип

CVE-2024-3120

почти 2 года назад

A stack-buffer overflow vulnerability exists in all versions of sngrep ...

CVSS3: 9
EPSS: Низкий
github логотип

GHSA-4p8q-p8qc-486x

почти 2 года назад

A stack-buffer overflow vulnerability exists in all versions of sngrep since v1.4.1. The flaw is due to inadequate bounds checking when copying 'Content-Length' and 'Warning' headers into fixed-size buffers in the sip_validate_packet and sip_parse_extra_headers functions within src/sip.c. This vulnerability allows remote attackers to execute arbitrary code or cause a denial of service (DoS) via crafted SIP messages.

CVSS3: 9
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2024:0106-1

почти 2 года назад

Security update for sngrep

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-3120

A stack-buffer overflow vulnerability exists in all versions of sngrep since v1.4.1. The flaw is due to inadequate bounds checking when copying 'Content-Length' and 'Warning' headers into fixed-size buffers in the sip_validate_packet and sip_parse_extra_headers functions within src/sip.c. This vulnerability allows remote attackers to execute arbitrary code or cause a denial of service (DoS) via crafted SIP messages.

CVSS3: 9
2%
Низкий
почти 2 года назад
nvd логотип
CVE-2024-3120

A stack-buffer overflow vulnerability exists in all versions of sngrep since v1.4.1. The flaw is due to inadequate bounds checking when copying 'Content-Length' and 'Warning' headers into fixed-size buffers in the sip_validate_packet and sip_parse_extra_headers functions within src/sip.c. This vulnerability allows remote attackers to execute arbitrary code or cause a denial of service (DoS) via crafted SIP messages.

CVSS3: 9
2%
Низкий
почти 2 года назад
debian логотип
CVE-2024-3120

A stack-buffer overflow vulnerability exists in all versions of sngrep ...

CVSS3: 9
2%
Низкий
почти 2 года назад
github логотип
GHSA-4p8q-p8qc-486x

A stack-buffer overflow vulnerability exists in all versions of sngrep since v1.4.1. The flaw is due to inadequate bounds checking when copying 'Content-Length' and 'Warning' headers into fixed-size buffers in the sip_validate_packet and sip_parse_extra_headers functions within src/sip.c. This vulnerability allows remote attackers to execute arbitrary code or cause a denial of service (DoS) via crafted SIP messages.

CVSS3: 9
2%
Низкий
почти 2 года назад
suse-cvrf логотип
openSUSE-SU-2024:0106-1

Security update for sngrep

почти 2 года назад

Уязвимостей на страницу