CVE-2013-2223
Publication date 4 October 2013
Last updated 24 July 2024
Ubuntu priority
GNU ZRTPCPP before 3.2.0 allows remote attackers to obtain sensitive information (uninitialized heap memory) or cause a denial of service (out-of-bounds read) via a crafted packet, as demonstrated by a truncated Ping packet that is not properly handled by the getEpHash function.
Status
Package | Ubuntu Release | Status |
---|---|---|
libzrtpcpp | ||
18.04 LTS bionic | Not in release | |
16.04 LTS xenial |
Not affected
|
|
14.04 LTS trusty | Not in release | |