Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Debian 7 Wheezy DLA-1040-1 Critical: Resiprocate DoS Issue

debian lts
Calendar Grey July 26, 2017
Dist Debian Esm H88
Update the resiprocate package to version 1.8.5-4+deb7u1 to address CVE-2017-11521 denial-of-service vulnerabilities in Debian LTS environments.
CVE-2017-11521 The SdpContents::Session::Medium::parse function in resip/stack/SdpContents.cxx in reSIProcate 1.10.2 allows remote

Summary

CVE-2017-11521
The SdpContents::Session::Medium::parse function in
resip/stack/SdpContents.cxx in reSIProcate 1.10.2 allows remote
attackers to cause a denial of service (memory consumption) by
triggering many media connections.



For Debian 7 "Wheezy", these problems have been fixed in version
1.8.5-4+deb7u1.

We recommend that you upgrade your resiprocate packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS



Severity
critical
Lowest
Low
Medium
High
Critical

Package: resiprocate
Version: 1.8.5-4+deb7u1
CVE ID: CVE-2017-11521

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here