CVE-2020-27507: Buffer Overflow
The Kamailio SIP before 5.5.0 server mishandles INVITE requests with duplicated fields and overlength tag, leading to a buffer overflow that crashes the server or possibly have unspecified other impact.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2020-27507?
CVE-2020-27507 is classified as a high severity vulnerability due to its potential to cause a buffer overflow and crash the Kamailio server.
How do I fix CVE-2020-27507?
To fix CVE-2020-27507, upgrade to Kamailio version 5.5.0 or later, where the vulnerability has been addressed.
What is the impact of exploiting CVE-2020-27507?
Exploiting CVE-2020-27507 can lead to a crash of the Kamailio server and may also introduce other unspecified impacts.
Which versions of Kamailio are affected by CVE-2020-27507?
CVE-2020-27507 affects all Kamailio versions prior to 5.5.0.
How does CVE-2020-27507 occur in Kamailio?
CVE-2020-27507 occurs when the Kamailio SIP server mishandles INVITE requests that have duplicated fields and overlength tags.