Updated sofia-sip packages fix security vulnerability
Publication date: 07 Feb 2023Modification date: 06 Feb 2023
Type: security
Affected Mageia releases : 8
CVE: CVE-2023-22741
Description
Missing message length and attributes length checks** when it handles STUN packets, leading to controllable heap-over-flow (CVE-2023-22741)
References
SRPMS
8/core
- sofia-sip-1.12.11-10.2.mga8