CVE-2026-90778

SIPp through 3.7.7 contains a buffer overflow vulnerability in get_peer_tag() function when processing SIP To headers with tag parameters of 2049 bytes or more. Unauthenticated remote attackers can send crafted SIP messages with oversized tag parameters to overflow the static buffer and crash the process.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-13 12:17

Updated : 2026-09-14 19:18


NVD link : CVE-2026-90778

Mitre link : CVE-2026-90778

CVE.ORG link : CVE-2026-90778


JSON object : View

Products Affected

No product.

CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')