Search CVE reports


Toggle filters

1 – 10 of 44 results


CVE-2026-40892

Medium priority
Needs evaluation

(PJSIP is a free and open source multimedia communication library writt ...)

2 affected packages

asterisk, pjproject

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
asterisk Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
pjproject Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2026-40614

Medium priority
Needs evaluation

(PJSIP is a free and open source multimedia communication library writt ...)

2 affected packages

asterisk, pjproject

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
asterisk Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
pjproject Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2026-34235

Medium priority
Needs evaluation

PJSIP is a free and open source multimedia communication library written in C. Prior to version 2.17, a heap out-of-bounds read vulnerability exists in PJSIP's VP9 RTP unpacketizer that occurs when parsing crafted VP9 Scalability...

1 affected package

pjproject

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2026-33069

Medium priority
Needs evaluation

PJSIP is a free and open source multimedia communication library written in C. Versions 2.16 and below have a cascading out-of-bounds heap read in pjsip_multipart_parse(). After boundary string matching, curptr is advanced past...

1 affected package

pjproject

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2026-32945

Medium priority
Needs evaluation

PJSIP is a free and open source multimedia communication library written in C. Versions 2.16 and below have a Heap-based Buffer Overflowvulnerability in the DNS parser's name length handler. Thisimpacts applications using PJSIP's...

1 affected package

pjproject

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2026-32942

Medium priority
Needs evaluation

PJSIP is a free and open source multimedia communication library written in C. Versions 2.16 and below contain a heap use-after-free vulnerability in the ICE session that occurs when there are race conditions between...

1 affected package

pjproject

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2026-29068

Medium priority
Vulnerable

PJSIP is a free and open source multimedia communication library written in C. Prior to version 2.17, there is a stack buffer overflow vulnerability when pjmedia-codec parses an RTP payload contain more frames than...

1 affected package

pjproject

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Not in release Not in release Not in release Vulnerable
Show less packages

CVE-2026-28799

Medium priority
Vulnerable

PJSIP is a free and open source multimedia communication library written in C. Prior to version 2.17, a heap use-after-free vulnerability exists in PJSIP's event subscription framework (evsub.c) that is triggered during presence...

1 affected package

pjproject

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Not in release Not in release Not in release Vulnerable
Show less packages

CVE-2026-26967

Medium priority
Vulnerable

PJSIP is a free and open source multimedia communication library written in C. In versions 2.16 and below, there is a critical Heap-based Buffer Overflow vulnerability in PJSIP's H.264 unpacketizer. The bug occurs when processing...

1 affected package

pjproject

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Not in release Not in release Not in release Vulnerable
Show less packages

CVE-2026-26203

Medium priority
Vulnerable

PJSIP is a free and open source multimedia communication library. Versions prior to 2.17 have a critical heap buffer underflow vulnerability in PJSIP's H.264 packetizer. The bug occurs when processing malformed H.264 bitstreams...

1 affected package

pjproject

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pjproject Not in release Not in release Not in release Vulnerable
Show less packages