{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/vendors/kamailio/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:kamailio:kamailio:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.4,"id":"CVE-2026-82608"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Kamailio (\u003c= 5.5.0, 6.0.7)"],"_cs_severities":["medium"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["Kamailio"],"content_html":"\u003cp\u003eKamailio versions up to 5.5.0 and 6.0.7 are vulnerable to an out-of-bounds read flaw within the get_4bytes function in the ims_registrar_scscf module (file: src/modules/ims_registrar_scscf/cxdx_avp.c). The AVP Handler component fails to properly validate input during processing, which can be exploited by a remote attacker to induce a crash or potentially leak sensitive memory contents. Publicly available exploit code exists, increasing the risk for environments using unpatched versions of the SIP server. The vendor has highlighted that version 5.5.0 is end-of-life and no longer receives security maintenance, necessitating an upgrade to supported versions for organizations currently relying on these legacy releases.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe vulnerability poses a significant risk to SIP-based infrastructure relying on affected versions of Kamailio. Successful exploitation may result in service disruption through denial-of-service or the exposure of sensitive memory data, potentially facilitating further exploitation of the host system.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade Kamailio to a supported version (6.0.8 or later) immediately, as version 5.5.0 is no longer maintained.\u003c/li\u003e\n\u003cli\u003eApply the vendor-provided patch (commit hash: abb5d60af6eefbd367bf6588c5589566b090e272) to custom builds if an immediate upgrade is not feasible.\u003c/li\u003e\n\u003cli\u003eMonitor logs for repeated crash events or process restarts in the Kamailio service, which may indicate attempts to trigger memory instability via this vulnerability.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-31T05:14:29Z","date_published":"2026-08-31T05:14:29Z","id":"https://feed.craftedsignal.io/briefs/2026-08-kamailio-oob-read/","summary":"Kamailio versions up to 5.5.0 and 6.0.7 contain an out-of-bounds read vulnerability in the get_4bytes function that allows remote attackers to trigger memory errors.","title":"Out-of-Bounds Read Vulnerability in Kamailio AVP Handler","url":"https://feed.craftedsignal.io/briefs/2026-08-kamailio-oob-read/"}],"language":"en","title":"CraftedSignal Threat Feed - Kamailio","version":"https://jsonfeed.org/version/1.1"}