The Session Initiation Protocol (SIP) implementation in IPTel SIP Express Router 0.8.9 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Sip_express_router | Iptel | 0.8.8 (including) | 0.8.8 (including) |
Sip_express_router | Iptel | 0.8.9 (including) | 0.8.9 (including) |