Closed RootUp closed 7 months ago
Hi @RootUp !
Could you provide some script or pcap to reproduce this problem and test possible fixes?
Thanks for the bug report!
Hi @Kaian
Sure, sample.pcap.zip
Hi!
Sorry for the late response.
Above commit should fix this problem by properly checking the payload size is enough while parsing RTCP headers. I will try to make a patch version soon with this change.
Thanks a lot for reporting!!
Thank you.!
Summary:
While fuzzing a heap-buffer-overflow error in
sngrep
while processing a malformed SIP packet, caused by accessing memory beyond allocated bounds in thertp_check_packet
function.Affected version/Tested on:
ASAN: