From 4ff1286984b451245e4bdf4e277c6415bb9ba2df Mon Sep 17 00:00:00 2001 From: GLSAMaker Date: Mon, 31 Oct 2022 01:12:52 +0000 Subject: [ GLSA 202210-18 ] Sofia-SIP: Multiple Vulnerabilities Bug: https://bugs.gentoo.org/848870 Signed-off-by: GLSAMaker Signed-off-by: John Helmert III --- glsa-202210-18.xml | 44 ++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 44 insertions(+) create mode 100644 glsa-202210-18.xml (limited to 'glsa-202210-18.xml') diff --git a/glsa-202210-18.xml b/glsa-202210-18.xml new file mode 100644 index 00000000..02b970e9 --- /dev/null +++ b/glsa-202210-18.xml @@ -0,0 +1,44 @@ + + + + Sofia-SIP: Multiple Vulnerabilities + Multiple vulnerabilities have been discovered in Sofia-SIP, the worst of which could result in remote code execution. + sofia-sip + 2022-10-31 + 2022-10-31 + 848870 + remote + + + 1.13.8 + 1.13.8 + + + +

Sofia-SIP is an RFC3261 compliant SIP User-Agent library.

+
+ +

Multiple vulnerabilities have been discovered in Sofia-SIP. Please review the CVE identifiers referenced below for details.

+
+ +

Please review the referenced CVE identifiers for details.

+
+ +

There is no known workaround at this time.

+
+ +

All Sofia-SIP users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=net-libs/sofia-sip-1.13.8" + +
+ + CVE-2022-31001 + CVE-2022-31002 + CVE-2022-31003 + + ajak + ajak +
\ No newline at end of file -- cgit v1.2.3-65-gdbad