Vulnerabilidades en pjsip
48 resultadosAnálisis Vexday
PJSIP acumula 38 vulnerabilidades na base, com 6 críticas (CVSS elevado), sendo a escrita de buffer (CWE-120) a fraqueza predominante; apesar de nenhuma sob ataque ativo registrado no KEV, as 3 publicações nos últimos 90 dias indicam que o componente continua sendo alvo de descobertas recentes. O risco está contido no presente, mas requer monitoramento ativo dado o padrão histórico de vulnerabilidades de memória.
CVE-2026-57163HIGHPJSIP: Stack overflow parsing a TLS peer certificate's SubjectAltName in GnuTLS backendEPSS 0.4%CVE-2026-26967HIGHPJSIP has a Heap-based Buffer Overflow vulnerability in its H.264 unpacketizerEPSS 0.4%CVE-2026-40614HIGHPJSIP: Heap buffer overflow in Opus codec decodingEPSS 0.4%CVE-2025-65102HIGHPJSIP is vulnerable to buffer overflow in Opus PLCEPSS 0.3%CVE-2026-42225HIGHGnuTLS backend silently skips certificate chain verification when verify_peer is falseEPSS 0.3%CVE-2026-84975HIGHPJSIP: TLS server identity (hostname) verification bypass via embedded NUL in certificate SubjectAltName (OpenSSL and GnuTLS backends)EPSS 0.2%CVE-2026-77396MEDIUMPJSIP: Heap buffer overflow in the AVI parserEPSS 0.2%CVE-2026-26203MEDIUMPJSIP's pjmedia-video has use-after-free in H264 packetizer when packetizing fragmented NALEPSS 0.1%