CVE-2021-43302

CRITICAL9.1EPSS 0.32%
Published: 2/16/2022Modified: 4/28/2026
Also known as:ALPINE-CVE-2021-43302DEBIAN-CVE-2021-43302

Description

Read out-of-bounds in PJSUA API when calling pjsua_recorder_create. An attacker-controlled 'filename' argument may cause an out-of-bounds read when the filename is shorter than 4 characters.

Affected packages (3)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1CRITICAL9.1CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H

References (2)