Advisories ยป MGASA-2023-0040

Updated sofia-sip packages fix security vulnerability

Publication date: 07 Feb 2023
Modification date: 06 Feb 2023
Type: security
Affected Mageia releases : 8
CVE: CVE-2023-22741

Description

Missing message length and attributes length checks** when it handles STUN
packets, leading to controllable heap-over-flow (CVE-2023-22741)
                

References

SRPMS

8/core