Project

General

Profile

Actions

Bug #7093

closed

sip: wrong slice used for sip_take_line with tcp leads to quadratic oom

Added by Philippe Antoine 6 months ago. Updated 6 months ago.

Status:
Closed
Priority:
Normal
Target version:
Affected Versions:
Effort:
Difficulty:
Label:


Subtasks 1 (0 open1 closed)

Security #7094: sip: unbounded number of transactions (7.0.x backport)RejectedActions
Actions #1

Updated by OISF Ticketbot 6 months ago

  • Subtask #7094 added
Actions #2

Updated by OISF Ticketbot 6 months ago

  • Label deleted (Needs backport to 7.0)
Actions #3

Updated by Philippe Antoine 6 months ago

  • Subject changed from sip: unbounded number of transactions to sip: wrong slice used for sip_take_line with tcp leads to quadratic oom

I think there is no need to backport as SIP over TCP is only in master

Actions #4

Updated by Victor Julien 6 months ago

If there is only an issue in master, I think it can go public and be downgraded to "bug".

Actions #5

Updated by Philippe Antoine 6 months ago

  • Tracker changed from Security to Bug
  • Severity deleted (MODERATE)
  • Disclosure Date deleted (09/11/2024)
Actions #6

Updated by Philippe Antoine 6 months ago

  • Status changed from New to Closed
Actions #7

Updated by Philippe Antoine 6 months ago

  • Private changed from Yes to No
Actions

Also available in: Atom PDF