PJSIP is a free and open source multimedia communication library written in C. In 2.16 and earlier, there is an integer overflow in media stream buffer size calculation when processing SDP with asymmetric ptime configuration. The overflow may result in an undersized buffer allocation, which can lead to unexpected application termination or memory corruption This vulnerability is fixed in 2.17.
Metrics
Affected Vendors & Products
References
History
Fri, 24 Apr 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | PJSIP is a free and open source multimedia communication library written in C. In 2.16 and earlier, there is an integer overflow in media stream buffer size calculation when processing SDP with asymmetric ptime configuration. The overflow may result in an undersized buffer allocation, which can lead to unexpected application termination or memory corruption This vulnerability is fixed in 2.17. | |
| Title | PJSIP: Asymmetric ptime integer overflow in Media Stream | |
| Weaknesses | CWE-190 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-04-24T18:40:08.349Z
Reserved: 2026-04-20T15:32:33.813Z
Link: CVE-2026-41416
No data.
Status : Received
Published: 2026-04-24T19:17:13.327
Modified: 2026-04-24T19:17:13.327
Link: CVE-2026-41416
No data.
OpenCVE Enrichment
No data.