Skip to content

Prevent OOB read for RTCP XR block

High
sauwming published GHSA-r374-qrwv-86hh Dec 24, 2021

Package

No package listed

Affected versions

2.11.1 or lower

Patched versions

2.12 or later

Description

If incoming RTCP XR message contain block, the data field is not checked against the received packet size, potentially resulting in an out-of-bound read access.

Impact

It affects all users that use PJMEDIA and RTCP XR. A malicious actor can send a RTCP XR message with an invalid packet size.

Patches

The patch is available as commit f74c1fc in the master branch.

For more information

If you have any questions or comments about this advisory:
Email us at [email protected]

Severity

High

CVE ID

CVE-2021-43845

Weaknesses

No CWEs

Credits