Vulnerabilities (CVE)

Filtered by vendor Drachtio Subscribe
Filtered by product Drachtio-server
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-47517 1 Drachtio 1 Drachtio-server 2023-08-08 N/A 7.5 HIGH
An issue was discovered in the libsofia-sip fork in drachtio-server before 0.8.19. It allows remote attackers to cause a denial of service (daemon crash) via a crafted UDP message that causes a url_canonize2 heap-based buffer over-read because of an off-by-one error.