Impact
SIPp versions up to 3.7.7 contain a buffer overflow in the get_header() routine of src/sip_parser.cpp when a SIP message contains header content larger than 20,490 bytes. The overflow corrupts a static buffer, causing the SIPp process to crash. Attackers do not need authentication and can trigger the vulnerability remotely by sending a crafted SIP message with an oversized header, leading to disruption of the application's availability.
Affected Systems
The vulnerable product is SIPp, specifically releases 3.7.7 and earlier. All installations of these versions that receive unfiltered SIP traffic are at risk.
Risk and Exploitability
The CVSS score of 8.7 signals a high‑severity flaw. The EPSS score is < 1%, indicating a very low exploitation probability, and the vulnerability is not yet listed in CISA’s KEV catalog, suggesting the public is still becoming aware of it. An unauthenticated attacker can exploit this by injecting a malicious SIP request with an excessively large header; successful exploitation results in a process crash, making the application unavailable until it is restarted. The exposure is remote and does not require local or privileged access.
OpenCVE Enrichment