Vendor
medium
advisory
SIPSorcery Denial of Service via SCTP SACK Chunk OOB Read
1 TTPThe SIPSorcery library is vulnerable to a denial of service via a crafted SCTP SACK chunk that causes an out-of-bounds read and subsequent termination of the SCTP receive thread.
SIPSorcery
1t
medium
advisory
SIPSorcery: Malformed UDP Packet Can Remotely Terminate Media Sessions (DoS)
2 TTPsA denial-of-service vulnerability (CVE-2026-54632) exists in the SIPSorcery NuGet package versions <= 10.0.8, allowing an unauthenticated attacker to remotely terminate an active RTP or WebRTC media session by sending a single malformed inbound UDP packet to the RTP/ICE socket, which exploits insufficient length checks and an exception handling flaw.
SIPSorcery
denial-of-service
vulnerability
nuget
2t