UBUNTU-CVE-2018-8828
Dashboard / Vulnerabilities / UBUNTU-CVE-2018-8828
UBUNTU-CVE-2018-8828
Summary:
Details: A Buffer Overflow issue was discovered in Kamailio before 4.4.7, 5.0.x before 5.0.6, and 5.1.x before 5.1.2. A specially crafted REGISTER message with a malformed branch or From tag triggers an off-by-one heap-based buffer overflow in the tmx_check_pretran function in modules/tmx/tmx_pretran.c.
References: https://ubuntu.com/security/CVE-2018-8828, https://github.com/EnableSecurity/advisories/tree/master/ES2018-05-kamailio-heap-overflow, https://github.com/kamailio/kamailio/commit/e1d8008a09d9390ebaf698abe8909e10dfec4097, https://ubuntu.com/security/notices/USN-4240-1, https://www.cve.org/CVERecord?id=CVE-2018-8828
Affected packages
Package
Name: kamailio
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
