This is a continuation of GHSA-9pfh-r8x4-w26w.
Impact
Possible buffer overread when parsing a specially crafted STUN message. The vulnerability affects applications that uses STUN including PJNATH and PJSUA-LIB.
Patches
The patch is available as commit bc4812d in the master branch.
For more information
If you have any questions or comments about this advisory:
Email us at security@pjsip.org
Reporter
google/oss-fuzz
This is a continuation of GHSA-9pfh-r8x4-w26w.
Impact
Possible buffer overread when parsing a specially crafted STUN message. The vulnerability affects applications that uses STUN including PJNATH and PJSUA-LIB.
Patches
The patch is available as commit bc4812d in the master branch.
For more information
If you have any questions or comments about this advisory:
Email us at security@pjsip.org
Reporter
google/oss-fuzz