CVE-2026-54632

SIPSorcery is a WebRTC, SIP, and VoIP library for C# and .NET. Prior to 10.0.9, RTPChannel.OnRTPPacketReceived and the STUNAttribute.ParseMessageAttributes, STUNXORAddressAttribute, and STUNAddressAttribute parsing path index untrusted bytes without sufficient length checks, while UdpReceiver.EndReceiveFrom closes the channel when those operations raise a non-socket exception. A remote party can send a single short RTP packet or malformed zero-to-seven-byte STUN address attribute to the shared RTP/ICE socket, including during ICE connectivity checks before DTLS or STUN MESSAGE-INTEGRITY verification, and terminate the active RTP or WebRTC media session. The attacker must reach or learn the advertised ephemeral RTP/ICE port, but no authentication or user interaction is required, and the impact is limited to availability. This issue is fixed in version 10.0.9.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-14 20:16

Updated : 2026-09-15 15:17


NVD link : CVE-2026-54632

Mitre link : CVE-2026-54632

CVE.ORG link : CVE-2026-54632


JSON object : View

Products Affected

No product.

CWE
CWE-20

Improper Input Validation

CWE-755

Improper Handling of Exceptional Conditions