Metrics
Affected Vendors & Products
Tue, 28 Oct 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:kamailio:kamailio:5.5.0:*:*:*:*:*:*:* |
Tue, 28 Oct 2025 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 27 Oct 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Kamailio
Kamailio kamailio |
|
| Vendors & Products |
Kamailio
Kamailio kamailio |
Mon, 27 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 27 Oct 2025 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in Kamailio 5.5. Impacted is the function rve_destroy of the file src/core/rvalue.c of the component Configuration File Handler. The manipulation leads to heap-based buffer overflow. The attack must be carried out locally. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Kamailio Configuration File rvalue.c rve_destroy heap-based overflow | |
| Weaknesses | CWE-119 CWE-122 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-10-27T02:02:11.424Z
Updated: 2025-10-28T00:36:39.117Z
Reserved: 2025-10-25T11:52:06.759Z
Link: CVE-2025-12204
Updated: 2025-10-28T00:36:39.117Z
Status : Analyzed
Published: 2025-10-27T03:15:49.340
Modified: 2025-10-28T15:14:28.460
Link: CVE-2025-12204
No data.