View | Details | Raw Unified | Return to bug 227677 | Differences between
and this patch

Collapse All | Expand All

(-)security/vuxml/vuln.xml (+26 lines)
Lines 145184-145189 misc.c: Link Here
145184
    </dates>
145184
    </dates>
145185
  </vuln>
145185
  </vuln>
145186
145186
145187
  <vuln vid="5af6378b-bd88-4997-bccc-b9ba2daecdd2"
145188
    <topic>kamailio - buffer overflow</topic>
145189
    <affects>
145190
      <package>
145191
	<name>kamailio</name>
145192
	<range><lt>5.1.2</lt></range>
145193
      </package>
145194
    </affects>
145195
    <description>
145196
      <body xmlns="http://www.w3.org/1999/xhtml">
145197
	<p>A specially crafted REGISTER message with a malformed branch or 
145198
           From tag triggers an off-by-one heap-based buffer overflow in the 
145199
           tmx_check_pretran function in modules/tmx/tmx_pretran.c</p>
145200
      </body>
145201
    </description>
145202
    <references>
145203
      <cvename>CVE-2018-8828</cvename>
145204
      <url>https://www.kamailio.org/w/2018/03/kamailio-security-announcement-tmx-lcr/</url>
145205
      <url>https://github.com/EnableSecurity/advisories/tree/master/ES2018-05-kamailio-heap-overflow</url>
145206
    </references>
145207
    <dates>
145208
      <discovery>2018-02-10</discovery>
145209
      <entry>2018-05-06</entry>
145210
    </dates>
145211
  </vuln>
145212
145187
  <vuln vid="c6b9aee8-3071-11da-af18-000ae4641456">
145213
  <vuln vid="c6b9aee8-3071-11da-af18-000ae4641456">
145188
    <topic>phpmyfaq -- SQL injection, takeover, path disclosure, remote code execution</topic>
145214
    <topic>phpmyfaq -- SQL injection, takeover, path disclosure, remote code execution</topic>
145189
    <affects>
145215
    <affects>

Return to bug 227677