exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 4 of 4 RSS Feed

CVE-2013-2139

Status Candidate

Overview

Buffer overflow in srtp.c in libsrtp in srtp 1.4.5 and earlier allows remote attackers to cause a denial of service (crash) via vectors related to a length inconsistency in the crypto_policy_set_from_profile_for_rtp and srtp_protect functions.

Related Files

Red Hat Security Advisory 2020-3873-01
Posted Sep 30, 2020
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2020-3873-01 - The libsrtp package provides an implementation of the Secure Real-time Transport Protocol, the Universal Security Transform, and a supporting cryptographic kernel. Issues addressed include a buffer overflow vulnerability.

tags | advisory, overflow, kernel, protocol
systems | linux, redhat
advisories | CVE-2013-2139, CVE-2015-6360
SHA-256 | 7537077747ce13320df2327ef07365af8ea04e51c6e06cb63eadc4d0cc7182ab
Mandriva Linux Security Advisory 2014-219
Posted Nov 21, 2014
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2014-219 - Fernando Russ from Groundworks Technologies reported a buffer overflow flaw in srtp, Cisco's reference implementation of the Secure Real-time Transport Protocol(SRTP), in how the crypto_policy_set_from_profile_for_rtp() function applies cryptographic profiles to an srtp_policy. A remote attacker could exploit this vulnerability to crash an application linked against libsrtp, resulting in a denial of service.

tags | advisory, remote, denial of service, overflow, protocol
systems | cisco, linux, mandriva
advisories | CVE-2013-2139
SHA-256 | 4b5a258db5c599bcb432c7d521bd5c29b7892a1bed1f9afdcb8dc8b676bb2169
Gentoo Linux Security Advisory 201405-02
Posted May 5, 2014
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory 201405-2 - A vulnerability in libSRTP can result in a Denial of Service condition. Versions less than 1.4.4_p20121108-r1 are affected.

tags | advisory, denial of service
systems | linux, gentoo
advisories | CVE-2013-2139
SHA-256 | 736863b3241e6336b6f24e5f4fe2c1f3ab925b1724a07863dc328f67403f4789
Debian Security Advisory 2840-1
Posted Jan 10, 2014
Authored by Debian | Site debian.org

Debian Linux Security Advisory 2840-1 - Fernando Russ from Groundworks Technologies reported a buffer overflow flaw in srtp, Cisco's reference implementation of the Secure Real-time Transport Protocol (SRTP), in how the crypto_policy_set_from_profile_for_rtp() function applies cryptographic profiles to an srtp_policy. A remote attacker could exploit this vulnerability to crash an application linked against libsrtp, resulting in a denial of service.

tags | advisory, remote, denial of service, overflow, protocol
systems | cisco, linux, debian
advisories | CVE-2013-2139
SHA-256 | 7a4e6e3edbabd53c7021a5f4ea2490aa91c3d510fd476c8a0afd8ec7c592ac90
Page 1 of 1
Back1Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    23 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close