CVE-2025-0430: Belledonne Communications Linphone-Desktop NULL Pointer Dereference
Published Jan 17, 2025
·Updated
Belledonne Communications Linphone-Desktop is vulnerable to a NULL Dereference vulnerability, which could allow a remote attacker to create a denial-of-service condition.
Affected Software
1 affected component
Belledonne Communications Linphone-Desktop=5.2.6
Remediation
Information
Belledonne Communications recommends users implement the fix in Version 5.3.99 https://gitlab.linphone.org/BC/public/linphone-sdk/-/commits/release/5.3/ of the linphone-sdk.
Event History
Jan 17, 2025
CVE Published
via MITRE·05:34 PM
Data Sourced
via MITRE·05:34 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-0430?
CVE-2025-0430 has a severity rating that indicates it could allow for a denial-of-service condition.
2
How do I fix CVE-2025-0430?
Fixing CVE-2025-0430 involves updating to the latest version of Linphone-Desktop, specifically version 5.2.6 or higher.
3
What types of attacks can exploit CVE-2025-0430?
CVE-2025-0430 can be exploited by remote attackers to cause a denial-of-service.
4
Which versions of Linphone-Desktop are affected by CVE-2025-0430?
CVE-2025-0430 specifically affects Linphone-Desktop version 5.2.6.
5
Who is the vendor of the affected software in CVE-2025-0430?
The vendor of the affected software for CVE-2025-0430 is Belledonne Communications.