CVE-2022-24763
- EPSS 1.4%
- Veröffentlicht 30.03.2022 21:15:07
- Zuletzt bearbeitet 06.05.2026 13:28:44
PJSIP is a free and open source multimedia communication library written in the C language. Versions 2.12 and prior contain a denial-of-service vulnerability that affects PJSIP users that consume PJSIP's XML parsing in their apps. Users are advised t...
CVE-2022-24764
- EPSS 0.94%
- Veröffentlicht 22.03.2022 17:15:07
- Zuletzt bearbeitet 04.11.2025 16:15:47
PJSIP is a free and open source multimedia communication library written in C. Versions 2.12 and prior contain a stack buffer overflow vulnerability that affects PJSUA2 users or users that call the API `pjmedia_sdp_print(), pjmedia_sdp_media_print()`...
CVE-2022-24754
- EPSS 0.46%
- Veröffentlicht 11.03.2022 20:15:08
- Zuletzt bearbeitet 04.11.2025 16:15:47
PJSIP is a free and open source multimedia communication library written in C language. In versions prior to and including 2.12 PJSIP there is a stack-buffer overflow vulnerability which only impacts PJSIP users who accept hashed digest credentials (...
CVE-2022-23608
- EPSS 0.78%
- Veröffentlicht 22.02.2022 20:15:07
- Zuletzt bearbeitet 04.11.2025 16:15:47
PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. In versions up to and including 2.11.1 when in a dialog set (or forking) scenario...
CVE-2021-43302
- EPSS 0.31%
- Veröffentlicht 16.02.2022 21:15:07
- Zuletzt bearbeitet 04.11.2025 16:15:45
Read out-of-bounds in PJSUA API when calling pjsua_recorder_create. An attacker-controlled 'filename' argument may cause an out-of-bounds read when the filename is shorter than 4 characters.
CVE-2021-43303
- EPSS 0.41%
- Veröffentlicht 16.02.2022 21:15:07
- Zuletzt bearbeitet 04.11.2025 16:15:45
Buffer overflow in PJSUA API when calling pjsua_call_dump. An attacker-controlled 'buffer' argument may cause a buffer overflow, since supplying an output buffer smaller than 128 characters may overflow the output buffer, regardless of the 'maxlen' a...
CVE-2021-43301
- EPSS 0.41%
- Veröffentlicht 16.02.2022 21:15:07
- Zuletzt bearbeitet 04.11.2025 16:15:44
Stack overflow in PJSUA API when calling pjsua_playlist_create. An attacker-controlled 'file_names' argument may cause a buffer overflow since it is copied to a fixed-size stack buffer without any size validation.
CVE-2021-43300
- EPSS 0.41%
- Veröffentlicht 16.02.2022 21:15:07
- Zuletzt bearbeitet 04.11.2025 16:15:44
Stack overflow in PJSUA API when calling pjsua_recorder_create. An attacker-controlled 'filename' argument may cause a buffer overflow since it is copied to a fixed-size stack buffer without any size validation.
CVE-2021-43299
- EPSS 0.28%
- Veröffentlicht 16.02.2022 21:15:07
- Zuletzt bearbeitet 04.11.2025 16:15:44
Stack overflow in PJSUA API when calling pjsua_player_create. An attacker-controlled 'filename' argument may cause a buffer overflow since it is copied to a fixed-size stack buffer without any size validation.
CVE-2022-21723
- EPSS 0.47%
- Veröffentlicht 27.01.2022 00:15:07
- Zuletzt bearbeitet 04.11.2025 16:15:46
PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. In versions 2.11.1 and prior, parsing an incoming SIP message that contains a mal...