VendorsTeluupjsipany version
Vulnerabilities

Teluu Pjsip any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

40CVEs
CVE-2021-37706
Potential integer underflow upon receiving STUN message in PJSIP
Published 2021-12-22 · Modified
9.8EPSS 0.046
CVE-2022-23608
Use after free in PJSIP
Published 2022-02-22 · Modified
9.8EPSS 0.041
CVE-2017-16872
An issue was discovered in Teluu pjproject (pjlib and pjlib-util) in PJSIP before 2.7.1. Parsing the numeric header fields in a SIP message (like cseq, ttl, port, etc.) all had the potential to overflow, either causing unintended values to be captured or, if the values were subsequently converted back to strings, a buffer overrun. This will lead to a potential exploit using carefully crafted invalid values.
Published 2017-11-17 · Modified
9.8EPSS 0.035
CVE-2021-43299
Stack overflow in PJSUA API when calling pjsua_player_create. An attacker-controlled 'filename' argument may cause a buffer overflow since it is copied to a fixed-size stack buffer without any size validation.
Published 2022-02-16 · Modified
9.8EPSS 0.025
CVE-2021-43300
Stack overflow in PJSUA API when calling pjsua_recorder_create. An attacker-controlled 'filename' argument may cause a buffer overflow since it is copied to a fixed-size stack buffer without any size validation.
Published 2022-02-16 · Modified
9.8EPSS 0.024
CVE-2021-43303
Buffer overflow in PJSUA API when calling pjsua_call_dump. An attacker-controlled 'buffer' argument may cause a buffer overflow, since supplying an output buffer smaller than 128 characters may overflow the output buffer, regardless of the 'maxlen' argument supplied
Published 2022-02-16 · Modified
9.8EPSS 0.024
CVE-2021-43301
Stack overflow in PJSUA API when calling pjsua_playlist_create. An attacker-controlled 'file_names' argument may cause a buffer overflow since it is copied to a fixed-size stack buffer without any size validation.
Published 2022-02-16 · Modified
9.8EPSS 0.024
CVE-2022-24754
Buffer overflow in pjsip
Published 2022-03-11 · Modified
9.8EPSS 0.021
CVE-2022-31031
Potential stack buffer overflow when parsing message as a STUN client
Published 2022-06-07 · Modified
9.8EPSS 0.020
CVE-2023-38703
PJSIP has use-after-free vulnerability in SRTP media transport
Published 2023-10-06 · Analyzed
9.8EPSS 0.013
CVE-2022-23537
PJSIP vulnerable to heap buffer overflow when decoding STUN message
Published 2022-12-20 · Modified
9.8EPSS 0.010
CVE-2022-21723
Out-of-bounds read in multipart parsing in PJSIP
Published 2022-01-27 · Modified
9.1EPSS 0.045
CVE-2021-43845
Prevent out-of-bounds read in PJSIP
Published 2021-12-27 · Modified
9.1EPSS 0.037
CVE-2022-21722
Potential out-of-bound read during RTP/RTCP parsing in PJSIP
Published 2022-01-27 · Modified
9.1EPSS 0.024
CVE-2021-43302
Read out-of-bounds in PJSUA API when calling pjsua_recorder_create. An attacker-controlled 'filename' argument may cause an out-of-bounds read when the filename is shorter than 4 characters.
Published 2022-02-16 · Modified
9.1EPSS 0.022
CVE-2026-57162
PJSIP: Stack overflow parsing SDP a=crypto attributes
Published 2026-09-04 · Analyzed
9.1EPSS 0.006
CVE-2022-39269
Media transport downgrade from the secure version (SRTP) to non-secure (RTP) in pjsip
Published 2022-10-06 · Modified
9.1EPSS 0.006
CVE-2026-34235
PJSIP: Heap OOB read in VPX unpacketizer
Published 2026-03-31 · Analyzed
9.1EPSS 0.005
CVE-2026-41415
PJSIP: SIP Multipart CID URI Length Underflow
Published 2026-04-24 · Analyzed
9.1EPSS 0.005
CVE-2026-57163
PJSIP: Stack overflow parsing a TLS peer certificate's SubjectAltName in GnuTLS backend
Published 2026-09-04 · Analyzed
9.1EPSS 0.004
CVE-2026-57161
PJSIP: Stack overflow handling Service-Route headers in a registration response
Published 2026-09-04 · Analyzed
8.8EPSS 0.005
CVE-2026-57159
PJSIP: SDP parser out-of-bounds write in remote payload-type map maintenance
Published 2026-09-04 · Analyzed
8.4EPSS 0.006
CVE-2026-57164
PJSIP: Heap overflow in the HTTP client
Published 2026-09-04 · Analyzed
8.3EPSS 0.005
CVE-2026-42225
GnuTLS backend silently skips certificate chain verification when verify_peer is false
Published 2026-05-07 · Analyzed
8.2EPSS 0.003
CVE-2026-41416
PJSIP: Asymmetric ptime integer overflow in Media Stream
Published 2026-04-24 · Analyzed
8.1EPSS 0.005
CVE-2021-41141
Missing release of locks in PJSIP
Published 2022-01-04 · Modified
7.8EPSS 0.014
CVE-2018-1000099
Teluu PJSIP version 2.7.1 and earlier contains a Access of Null/Uninitialized Pointer vulnerability in pjmedia SDP parsing that can result in Crash. This attack appear to be exploitable via Sending a specially crafted message. This vulnerability appears to have been fixed in 2.7.2.
Published 2018-03-13 · Modified
7.5EPSS 0.034
CVE-2017-16875
An issue was discovered in Teluu pjproject (pjlib and pjlib-util) in PJSIP before 2.7.1. The ioqueue component may issue a double key unregistration after an attacker initiates a socket connection with specific settings and sequences. Such double key unregistration will trigger an integer overflow, which may cause ioqueue backends to reject future key registrations.
Published 2017-11-17 · Modified
7.5EPSS 0.034
CVE-2018-1000098
Teluu PJSIP version 2.7.1 and earlier contains a Integer Overflow vulnerability in pjmedia SDP parsing that can result in Crash. This attack appear to be exploitable via Sending a specially crafted message. This vulnerability appears to have been fixed in 2.7.2.
Published 2018-03-13 · Modified
7.5EPSS 0.033
CVE-2022-24764
Stack buffer overflow in pjproject
Published 2022-03-22 · Modified
7.5EPSS 0.024
CVE-2023-27585
PJSIP is a free and open source multimedia communication library written in C. A buffer overflow vulnerability in versions 2.13 and prior affects applications that use PJSIP DNS resolver. It doesn't affect PJSIP users who do not utilise PJSIP DNS resolver. This vulnerability is related to CVE-2022-24793. The difference is that this issue is in parsing the query record `parse_query()`, while the issue in CVE-2022-24793 is in `parse_rr()`. A patch is available as commit `d1c5e4d` in the `master` branch. A workaround is to disable DNS resolution in PJSIP config (by setting `nameserver_count` to zero) or use an external resolver implementation instead.
Published 2023-03-14 · Modified
7.5EPSS 0.023
CVE-2021-43804
Out-of-bounds read when parsing RTCP BYE message in PJSIP
Published 2021-12-22 · Modified
7.5EPSS 0.022
CVE-2022-24763
Infinite Loop in PJSIP
Published 2022-03-30 · Modified
7.5EPSS 0.021
CVE-2022-24792
Potential infinite loop when parsing WAV format file in PJSIP
Published 2022-04-25 · Modified
7.5EPSS 0.019
CVE-2026-57160
PJSIP: SIP message header buffer overflow
Published 2026-09-04 · Analyzed
6.9EPSS 0.004
CVE-2020-15260
Existing TLS connections can be reused without checking remote hostname
Published 2021-03-10 · Modified
6.8EPSS 0.010
CVE-2021-21375
Crash in receiving updated SDP answer after initial SDP negotiation failed
Published 2021-03-10 · Modified
6.5EPSS 0.021
CVE-2026-57166
PJSIP: Pre-authentication overflow in the telnet CLI error
Published 2026-09-04 · Analyzed
6.3EPSS 0.005
CVE-2026-57165
PJSIP: Pre-authentication overflow in the telnet CLI history
Published 2026-09-04 · Analyzed
6.3EPSS 0.005
CVE-2021-32686
Denial of Service in PJSIP
Published 2021-07-23 · Modified
5.9EPSS 0.021