Condorlab

Lipisip2 – Denial of Service


Advisory IDRSN-SIP-1547


Vulnerability Information
In libosip2 in GNU oSIP 4.1.0, a malformed SIP message can lead to aheap buffer overflow in the _osip_message_to_str() function defined inosipparser2/osip_message_to_str.c, resulting in a remote DoS.


Release Date
2017-04-13 00:00:00


Solutions
RedShift Networks UCTM solution provides the industry’s first complete security solution developed for securing VOIP networks, endpoints and applications. Its dedicated CONDOR labs research team constantly scouts for new attack patterns, advanced penetration testing methods, vulnerabilities identification and roll out of new signatures to subscribed customers on a constant basis. For more information, visit www.redshiftnetworks.com


External Resources
https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-10325
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-10325