An exploitable denial-of-service vulnerability exists in the way CoTURN 4.5.1.1 web server parses POST requests. A specially crafted HTTP POST request can lead to server crash and denial of service. An attacker needs to send an HTTP request to trigger this vulnerability.
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Coturn | Coturn_project | 4.5.1.1 (including) | 4.5.1.1 (including) |
Coturn | Ubuntu | bionic | * |
Coturn | Ubuntu | eoan | * |
Coturn | Ubuntu | focal | * |
Coturn | Ubuntu | trusty | * |
Coturn | Ubuntu | xenial | * |