PJSIP is a free and open source multimedia communication library written in C. Versions 2.12 and prior contain a stack buffer overflow vulnerability that affects PJSUA2 users or users that call the API `pjmedia_sdp_print(), pjmedia_sdp_media_print()`. Applications that do not use PJSUA2 and do not directly call `pjmedia_sdp_print()` or `pjmedia_sdp_media_print()` should not be affected. A patch is available on the `master` branch of the `pjsip/pjproject` GitHub repository. There are currently no known workarounds.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2022-03-22T00:00:00

Updated: 2024-08-03T04:20:50.535Z

Reserved: 2022-02-10T00:00:00

Link: CVE-2022-24764

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-03-22T17:15:07.870

Modified: 2023-08-30T01:15:36.040

Link: CVE-2022-24764

cve-icon Redhat

No data.