Skip to content

Denial-of-service in XML parsing due to an infinite loop

High
sauwming published GHSA-5x45-qp78-g4p4 Mar 29, 2022

Package

No package listed

Affected versions

2.12 or lower

Patched versions

2.12.1 or later

Description

Impact

It is a denial-of-service vulnerability that affects PJSIP users that uses PJSIP's XML parsing in their apps.

Patches

The patch is available as commit 856f87c in the master branch.

For more information

If you have any questions or comments about this advisory:
Email us at [email protected]

Severity

High

CVE ID

CVE-2022-24763

Weaknesses

No CWEs

Credits