Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39902
HistoryMar 22, 2023 - 4:52 a.m.

Denial Of Service (DoS)

2023-03-2204:52:17
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11
sofia-sip
dos attacks
freeswitch
application crash
evil sdp
url vulnerability

0.002 Low

EPSS

Percentile

52.1%

sofia-sip is vulnerable to Denial of Service (DoS) attacks. An attacker is able to send a message with evil sdp to FreeSWITCH, which may cause an application crash with the use of a URL ending with %.