[OpenSIPS-Devel] [OpenSIPS/opensips] 852f9d: Fix crash in parse_sdp for fmtp, rtpmap and hold

Răzvan Crainea noreply at github.com
Wed Mar 30 06:55:58 UTC 2022


  Branch: refs/heads/3.2
  Home:   https://github.com/OpenSIPS/opensips
  Commit: 852f9d9d71d92b870072b07d44cf55a258b88f0a
      https://github.com/OpenSIPS/opensips/commit/852f9d9d71d92b870072b07d44cf55a258b88f0a
  Author: Razvan Crainea <razvan at opensips.org>
  Date:   2022-03-30 (Wed, 30 Mar 2022)

  Changed paths:
    M parser/sdp/sdp_helpr_funcs.c

  Log Message:
  -----------
  Fix crash in parse_sdp for fmtp, rtpmap and hold

When invalid strings would have been passed, the remaining value would
have resulted in an invalid memory access.

Issue discovered during OpenSIPS Security Audit 2021,
    by Alfred Farrugia & Sandro Gauci (Enable Security)





More information about the Devel mailing list