Condorlab

Android SIP account names information retrieval

Advisory IDRSN-SIP-1662 Vulnerability Information In notifyProfileAdded and notifyProfileRemoved of SipService.java, there is a possible way to retrieve SIP account names due to a missing permission check. Technical Informat...

Kamailio 5.4.0 Header Smuggling

Advisory IDRSN-SIP-1654 Vulnerability Information Kamailio before 5.4.0, as used in Sip Express Router (SER) in Sippy Softswitch 4.5 through 5.2 and other products, allows a bypass of a header-removal protection mechanism via white...

Asterisk – Remote crash in res_pjsip_session

Advisory IDRSN-SIP-1657 Vulnerability Information This is a crash within PJSIP whereby under heavy load the INVITE transaction on an INVITE session may not be set when sending a response, resulting in a crash. Technical Info...