PJSIP is a free and open source multimedia communication library written in the C language. Versions 2.12 and prior contain a denial-of-service vulnerability that affects PJSIP users that consume PJSIPs XML parsing in their apps. Users are advised to update. There are no known workarounds.
The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Pjsip | Pjsip | * | 2.12 (including) |
Pjproject | Ubuntu | bionic | * |
Pjproject | Ubuntu | trusty | * |
Pjproject | Ubuntu | xenial | * |
Ring | Ubuntu | bionic | * |
Ring | Ubuntu | esm-apps/bionic | * |
Ring | Ubuntu | focal | * |
Ring | Ubuntu | impish | * |
Ring | Ubuntu | trusty | * |
Ring | Ubuntu | xenial | * |