Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2007-4924

The Open Phone Abstraction Library (opal), as used by (1) Ekiga before 2.0.10 and (2) OpenH323 before 2.2.4, allows remote attackers to cause a denial of service (crash) via an invalid Content-Length header field in Session Initiation Protocol (SIP) packets, which causes a \0 byte to be written to an "attacker-controlled address."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.227
EPSS Ranking 95.6%
CVSS Severity
CVSS v2 Score 5.0
References
Products affected by CVE-2007-4924


Contact Us

Shodan ® - All rights reserved