CVE-2006-0189

Estara Softphone - Buffer Overflow

Title source: rule

Description

Buffer overflow in eStara Softphone 3.0.1.14 through 3.0.1.46 allows remote attackers to execute arbitrary code via a long attribute (aka "a") field in the SDP data of a SIP packet on UDP port 5060.

Exploits (2)

exploitdb WORKING POC VERIFIED
by kokanin · perlremotewindows
https://www.exploit-db.com/exploits/1414
exploitdb WORKING POC VERIFIED
by ZwelL · cremotewindows
https://www.exploit-db.com/exploits/1413

Scores

EPSS 0.4255
EPSS Percentile 97.5%

Details

Status published
Products (2)
estara/softphone 3.0.1.14
estara/softphone 3.0.1.46
Published Jan 13, 2006
Tracked Since Feb 18, 2026