Multiple critical vulnerabilities in the PJSIP multimedia library enable a remote, unauthenticated attacker to cause a Denial of Service. The CVSS Base Score for these flaws is 9.8. Affected versions include PJSIP versions up to and including 2.17.
[WID-SEC-2026-2642] PJSIP (pjmedia): Mehrere Schwachstellen ermöglichen Denial of Service CVSS Base Score 9.8 (kritisch) CVSS Temporal Score 9.0 (kritisch) Remoteangriff ja Datum 03.08.2026 Stand 04.08.2026 Mitigation ja Betroffene Systeme Betriebssystem Sonstiges UNIX Windows Produktbeschreibung PJSIP ist eine freie und quelloffene Multimediabibliothek, die das Session Initiation Protocol (SIP) implementiert. Produkte 03.08.2026 Open Source PJSIP <=2.17 Angriff Angriff Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in PJSIP ausnutzen, um einen Denial of Service Angriff durchzuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben