CVE-2004-1940

sipclient.cpp in KPhone 4.0.1 and earlier allows remote attackers to cause a denial of service (crash) via a STUN response packet with a large attrLen value that causes an out-of-bounds read.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:kphone:kphone:2.0:*:*:*:*:*:*:*
cpe:2.3:a:kphone:kphone:3.13:*:*:*:*:*:*:*
cpe:2.3:a:kphone:kphone:3.14:*:*:*:*:*:*:*
cpe:2.3:a:kphone:kphone:3.11:*:*:*:*:*:*:*
cpe:2.3:a:kphone:kphone:3.12:*:*:*:*:*:*:*
cpe:2.3:a:kphone:kphone:2.1:*:*:*:*:*:*:*
cpe:2.3:a:kphone:kphone:2.11:*:*:*:*:*:*:*
cpe:2.3:a:kphone:kphone:4.0.1:*:*:*:*:*:*:*
cpe:2.3:a:kphone:kphone:3.0:*:*:*:*:*:*:*
cpe:2.3:a:kphone:kphone:3.1:*:*:*:*:*:*:*

Information

Published : 2004-12-31 05:00

Updated : 2017-07-11 01:31


NVD link : CVE-2004-1940

Mitre link : CVE-2004-1940


JSON object : View

Products Affected

kphone

  • kphone