Vulnerability Description
Irontec Sngrep v1.8.1 was discovered to contain a heap buffer overflow via the function rtp_check_packet at /sngrep/src/rtp.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted SIP packet.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Irontec | Sngrep | 1.8.1 |
Related Weaknesses (CWE)
References
- https://github.com/inputzero/Security-Advisories/blob/main/CVE-XXXX-XXXX.mdExploitPatchThird Party Advisory
- https://github.com/inputzero/Security-Advisories/blob/main/CVE-XXXX-XXXX.mdExploitPatchThird Party Advisory
FAQ
What is CVE-2024-35434?
CVE-2024-35434 is a vulnerability with a CVSS score of 7.5 (HIGH). Irontec Sngrep v1.8.1 was discovered to contain a heap buffer overflow via the function rtp_check_packet at /sngrep/src/rtp.c. This vulnerability allows attackers to cause a Denial of Service (DoS) vi...
How severe is CVE-2024-35434?
CVE-2024-35434 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-35434?
Check the references section above for vendor advisories and patch information. Affected products include: Irontec Sngrep.