Search CVE reports


Toggle filters

31 – 40 of 42 results


CVE-2021-43845

Medium priority

Some fixes available 2 of 14

PJSIP is a free and open source multimedia communication library. In version 2.11.1 and prior, if incoming RTCP XR message contain block, the data field is not checked against the received packet size, potentially resulting in an...

3 affected packages

pjproject, ring, asterisk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Vulnerable
ring Not in release Fixed Fixed
asterisk Needs evaluation Needs evaluation Ignored Ignored
Show less packages

CVE-2021-43804

Medium priority

Some fixes available 2 of 5

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. In affected versions if the incoming RTCP BYE...

2 affected packages

pjproject, ring

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Vulnerable
ring Not in release Fixed Fixed
Show less packages

CVE-2021-37706

Medium priority

Some fixes available 6 of 7

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. In affected versions if the incoming STUN message contains an...

2 affected packages

pjproject, ring

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Fixed
ring Not in release Fixed Fixed
Show less packages

CVE-2021-32686

Low priority
Fixed

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. In PJSIP before version 2.11.1, there are a couple of issues...

1 affected package

pjproject

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Not in release Not in release Not in release Fixed
Show less packages

CVE-2021-21375

Medium priority
Fixed

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. In PJSIP version 2.10 and earlier, after an initial INVITE...

1 affected package

pjproject

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Not in release Not in release Not in release Fixed
Show less packages

CVE-2020-15260

Medium priority
Fixed

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. In version 2.10 and earlier, PJSIP transport can be reused if...

1 affected package

pjproject

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Not in release Not in release Not in release Fixed
Show less packages

CVE-2018-1000099

Medium priority

Some fixes available 1 of 2

Teluu PJSIP version 2.7.1 and earlier contains a Access of Null/Uninitialized Pointer vulnerability in pjmedia SDP parsing that can result in Crash. This attack appear to be exploitable via Sending a specially crafted message....

1 affected package

pjproject

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Not in release Not in release Not in release Not affected
Show less packages

CVE-2018-1000098

Medium priority

Some fixes available 1 of 2

Teluu PJSIP version 2.7.1 and earlier contains a Integer Overflow vulnerability in pjmedia SDP parsing that can result in Crash. This attack appear to be exploitable via Sending a specially crafted message. This vulnerability...

1 affected package

pjproject

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Not in release Not in release Not in release Not affected
Show less packages

CVE-2017-16875

Low priority

Some fixes available 1 of 3

An issue was discovered in Teluu pjproject (pjlib and pjlib-util) in PJSIP before 2.7.1. The ioqueue component may issue a double key unregistration after an attacker initiates a socket connection with specific settings...

1 affected package

pjproject

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Not in release Not in release Not in release Not affected
Show less packages

CVE-2017-16872

Medium priority

Some fixes available 1 of 3

An issue was discovered in Teluu pjproject (pjlib and pjlib-util) in PJSIP before 2.7.1. Parsing the numeric header fields in a SIP message (like cseq, ttl, port, etc.) all had the potential to overflow, either causing unintended...

1 affected package

pjproject

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Not in release Not in release Not in release Not affected
Show less packages