PJSIP: Heap Buffer Overflow A vulnerability has been discovered in PJSIP, which could lead to arbitrary code execution. pjproject 2024-09-22 2024-09-22 917463 local and remote 2.13.1 2.13.1

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE.

Please review the CVE identifier referenced below for details.

Please review the CVE identifier referenced below for details.

There is no known workaround at this time.

All PJSIP users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=net-libs/pjproject-2.13.1"
CVE-2023-27585 graaff graaff