From cebb01e5fb39e6103d5f68c94f8836cf6d7f5e8c Mon Sep 17 00:00:00 2001 From: GLSAMaker Date: Fri, 5 Jul 2024 06:01:03 +0000 Subject: [ GLSA 202407-10 ] Sofia-SIP: Multiple Vulnerabilities Bug: https://bugs.gentoo.org/891791 Signed-off-by: GLSAMaker Signed-off-by: Hans de Graaff --- glsa-202407-10.xml | 41 +++++++++++++++++++++++++++++++++++++++++ 1 file changed, 41 insertions(+) create mode 100644 glsa-202407-10.xml diff --git a/glsa-202407-10.xml b/glsa-202407-10.xml new file mode 100644 index 00000000..98030802 --- /dev/null +++ b/glsa-202407-10.xml @@ -0,0 +1,41 @@ + + + + Sofia-SIP: Multiple Vulnerabilities + Multiple vulnerabilities have been discovered in Sofia-SIP, the worst of which can lead to remote code execution. + sofia-sip + 2024-07-05 + 2024-07-05 + 891791 + remote + + + 1.13.16 + + + +

Sofia-SIP is an RFC3261 compliant SIP User-Agent library.

+
+ +

Multiple vulnerabilities have been discovered in Sofia-SIP. Please review the CVE identifiers referenced below for details.

+
+ +

Multiple vulnerabilities have been discovered in Sofia-SIP. Please review the CVE identifiers referenced below for details.

+
+ +

There is no known workaround at this time.

+
+ +

Gentoo has discontinued support for the Sofia-SIP package. We recommend that users unmerge it:

+ + + # emerge --ask --depclean "net-libs/sofia-sip" + +
+ + CVE-2023-22741 + CVE-2023-32307 + + graaff + graaff +
\ No newline at end of file -- cgit v1.2.3-65-gdbad