OSV-2021-1224
Dashboard / Vulnerabilities / OSV-2021-1224
OSV-2021-1224
Published: 11 Sept 2021Last Modified: 13 Apr 2022
Summary: Heap-buffer-overflow in srtp_stream_init_keys
Details: OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=38359 ``` Crash type: Heap-buffer-overflow READ {*} Crash state: srtp_stream_init_keys srtp_stream_init srtp_add_stream ```
Affected packages
Package
Name: libsrtp
Purl: pkg:generic/libsrtp
Affected ranges
Type: GIT
Events:
Introduced- 812a683c8554f53b80f64b94966c790c59b7de32
Fixed -None
Affected versions
v2
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
