Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-24763

PJSIP is a free and open source multimedia communication library written in the C language. Versions 2.12 and prior contain a denial-of-service vulnerability that affects PJSIP users that consume PJSIP's XML parsing in their apps. Users are advised to update. There are no known workarounds.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 48.8%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
References
Products affected by CVE-2022-24763
  • Pjsip » Pjsip » Version: 2.10
    cpe:2.3:a:pjsip:pjsip:2.10
  • Pjsip » Pjsip » Version: 2.11
    cpe:2.3:a:pjsip:pjsip:2.11
  • Pjsip » Pjsip » Version: 2.11.1
    cpe:2.3:a:pjsip:pjsip:2.11.1
  • Pjsip » Pjsip » Version: 2.12
    cpe:2.3:a:pjsip:pjsip:2.12
  • Pjsip » Pjsip » Version: 2.5
    cpe:2.3:a:pjsip:pjsip:2.5
  • Pjsip » Pjsip » Version: 2.5.1
    cpe:2.3:a:pjsip:pjsip:2.5.1
  • Pjsip » Pjsip » Version: 2.5.5
    cpe:2.3:a:pjsip:pjsip:2.5.5
  • Pjsip » Pjsip » Version: 2.6
    cpe:2.3:a:pjsip:pjsip:2.6
  • Pjsip » Pjsip » Version: 2.7
    cpe:2.3:a:pjsip:pjsip:2.7
  • Pjsip » Pjsip » Version: 2.7.1
    cpe:2.3:a:pjsip:pjsip:2.7.1
  • Pjsip » Pjsip » Version: 2.7.2
    cpe:2.3:a:pjsip:pjsip:2.7.2
  • Pjsip » Pjsip » Version: 2.8
    cpe:2.3:a:pjsip:pjsip:2.8
  • Pjsip » Pjsip » Version: 2.9
    cpe:2.3:a:pjsip:pjsip:2.9
  • Debian » Debian Linux » Version: 10.0
    cpe:2.3:o:debian:debian_linux:10.0
  • Debian » Debian Linux » Version: 11.0
    cpe:2.3:o:debian:debian_linux:11.0
  • Debian » Debian Linux » Version: 9.0
    cpe:2.3:o:debian:debian_linux:9.0


Contact Us

Shodan ® - All rights reserved