Security Advisory

CVE-2026-0710

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-01-23 03:47:44
Last updated 2026-01-23 19:04:04
Assigner fedora
State PUBLISHED

Description

A flaw was found in SIPp. A remote attacker could exploit this by sending specially crafted Session Initiation Protocol (SIP) messages during an active call. This vulnerability, a NULL pointer dereference, can cause the application to crash, leading to a denial of service. Under specific conditions, it may also allow an attacker to execute unauthorized code, compromising the systems integrity and availability.