PJSIP is vulnerable to buffer overflow. The vulnerability exists because the DNS resolution in PJSIP config is not disabled which allows an attacker to cause a memory corruption which leads to an application crash.
github.com/pjsip/pjproject/commit/9fae8f43accef8ea65d4a8ae9cdf297c46cfe29a
github.com/pjsip/pjproject/security/advisories/GHSA-p6g5-v97c-w5q4
lists.debian.org/debian-lts-announce/2022/05/msg00047.html
lists.debian.org/debian-lts-announce/2022/11/msg00021.html
secdb.alpinelinux.org/edge/main.yaml
security.gentoo.org/glsa/202210-37
www.debian.org/security/2022/dsa-5285