SUSE-SR:2007:021Vendor advisory
http://lists.opensuse.org/opensuse-security-announce/2007-10/msg00006.html CVE-2007-4924
OpenH323 Opal SIP Protocol - Remote Denial of Service
Record summary
CVE-2007-4924 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.
Description
The Open Phone Abstraction Library (opal), as used by (1) Ekiga before 2.0.10 and (2) OpenH323 before 2.2.4, allows remote attackers to cause a denial of service (crash) via an invalid Content-Length header field in Session Initiation Protocol (SIP) packets, which causes a \0 byte to be written to an "attacker-controlled address."
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBOpenH323 Opal SIP Protocol - Remote Denial of ServiceExploitDB exploitby Jose Miguel EsparzaNot analyzed1 file
References
Showing 12 of 23[ekiga-list] 20070917 [ANNOUNCE] Ekiga 2.0.10 releasedmailing list
http://mail.gnome.org/archives/ekiga-list/2007-September/msg00103.html openh323.cvs.sourceforge.netConfirmation
http://openh323.cvs.sourceforge.net/openh323/opal/src/sip/sippdu.cxx?r1=2.83.2.19&r2=2.83.2.20 41637vdb entry
http://osvdb.org/41637 27118Third-party advisory
http://secunia.com/advisories/27118 27128Third-party advisory
http://secunia.com/advisories/27128 27129Third-party advisory
http://secunia.com/advisories/27129 27271Third-party advisory
http://secunia.com/advisories/27271 27524Third-party advisory
http://secunia.com/advisories/27524 28380Third-party advisory
http://secunia.com/advisories/28380 MDKSA-2007:205Vendor advisory
http://www.mandriva.com/security/advisories?name=MDKSA-2007:205 RHSA-2007:0957Vendor advisory
http://www.redhat.com/support/errata/RHSA-2007-0957.html