vendor:
KPhone
by:
Unknown
N/A
CVSS
N/A
Denial of Service
Unknown
CWE
Product Name: KPhone
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: Unknown
Related CWE: Unknown
CPE: Unknown
Platforms Tested:
Unknown
Denial of Service Vulnerability in KPhone
A denial of service vulnerability has been reported in KPhone. This issue may be triggered by a malformed SIP (Session Initiation Protocol) STUN message. This is due to insufficient validation of user-specified STUN packet attribute lengths, causing an out of bounds read and subsequent crash.
Mitigation:
Unknown