VoIPmonitor 27.6 Buffer Overflow
Posted by deepcore on March 16, 2021 – 4:51 pm
A buffer overflow was identified in the VoIPmonitor live sniffer feature. The description variable in the function save_packet_sql is defined as a fixed length array of 1024 characters. The description is set to the value of a SIP request or response line. By setting a long request or response line VoIPmonitor will trigger a buffer overflow.
Post a reply
You must be logged in to post a comment.