CVE-2017-11654

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
26/07/2017
Last modified:
20/04/2025

Description

An out-of-bounds read and write flaw was found in the way SIPcrack 0.2 processed SIP traffic, because 0x00 termination of a payload array was mishandled. A remote attacker could potentially use this flaw to crash the sipdump process by generating specially crafted SIP traffic.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sipcrack_project:sipcrack:0.2:*:*:*:*:*:*:*