Description
An issue in kamailio v.6.1.1 and before allows a remote attacker to cause a denial of service via the IMS P-CSCF registration handling components
Published: 2026-09-01
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Immediate Patch
AI Analysis

Impact

An issue in Kamailio versions 6.1.1 and earlier allows a remote attacker to manipulate the IMS P‑CSCF registration handling components in a way that causes the SIP proxy to crash. The vulnerability results in a denial of service, interrupting VoIP communications for the affected systems. It falls under improper input validation and resource exhaustion weaknesses.

Affected Systems

The affected product is Kamailio 6.1.1 and all prior releases. The vulnerability is identified in the IMS P‑CSCF registration handling components of the SIP proxy.

Risk and Exploitability

The EPSS score is < 1%, indicating a very low probability of exploitation. The CVSS score of 7.5 signals a medium‑high severity. The vulnerability is not listed in CISA KEV, but it can cause a denial of service on any network running Kamailio 6.1.1 or earlier. The description suggests a remote attacker could use crafted IMS P‑CSCF registration messages to trigger a crash; however, the documentation does not state that authentication or privileged access is required, so it is inferred that it may be an unauthenticated attack. The potential impact is loss of service for all users of the SIP proxy and a severe degradation of VoIP availability.

Generated by OpenCVE AI on September 3, 2026 at 16:52 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the fix present at https://github.com/kamailio/kamailio/commit/91c5ca751799db4f25a28a495350cc97f7c2f390 or upgrade to Kamailio 6.1.2 or later
  • Use firewall or rate‑limiting rules to restrict excessive IMS P‑CSCF registration traffic from untrusted networks
  • Monitor SIP logs for repeated registration attempts that may indicate a DoS attack

Generated by OpenCVE AI on September 3, 2026 at 16:52 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-6494-1 kamailio security update
History

Fri, 04 Sep 2026 20:30:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:kamailio:kamailio:*:*:*:*:*:*:*:*

Thu, 03 Sep 2026 15:15:00 +0000

Type Values Removed Values Added
Title Denial of Service via IMS P‑CSCF Registration Handling in Kamailio 6.1.1 and Earlier
Weaknesses CWE-20
CWE-399

Wed, 02 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 02 Sep 2026 18:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-400
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}


Wed, 02 Sep 2026 02:45:00 +0000

Type Values Removed Values Added
Title Denial of Service via IMS P‑CSCF Registration Handling in Kamailio 6.1.1 and Earlier
Weaknesses CWE-20
CWE-399

Wed, 02 Sep 2026 00:30:00 +0000

Type Values Removed Values Added
First Time appeared Kamailio
Kamailio kamailio
Vendors & Products Kamailio
Kamailio kamailio

Tue, 01 Sep 2026 22:00:00 +0000

Type Values Removed Values Added
Description An issue in kamailio v.6.1.1 and before allows a remote attacker to cause a denial of service via the IMS P-CSCF registration handling components
References

Subscriptions

Kamailio Kamailio
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-02T17:52:11.444Z

Reserved: 2026-06-08T00:00:00.000Z

Link: CVE-2026-52022

cve-icon Vulnrichment

Updated: 2026-09-02T17:52:06.662Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-01T18:17:43.243

Modified: 2026-09-04T20:24:58.300

Link: CVE-2026-52022

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-03T17:00:06Z

Weaknesses
  • CWE-400

    Uncontrolled Resource Consumption