PJSIP
cpe:2.3:a:pjsip:pjsip:*:*:*:*:*:*:*
- <= 2.16
A vulnerability in PJSIP versions through 2.16 allows for an out-of-bounds read when handling a malformed Content-ID URI within SIP multipart message bodies. This issue arises from inadequate length validation, which can lead to reading data beyond the intended buffer limits.
Exploitation of this vulnerability could result in out-of-bounds read, potentially leading to memory corruption or disclosure of sensitive information.
Users can upgrade to PJSIP version 2.17, where this vulnerability has been fixed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.