Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4002 articles · 197512 vulns · 37/41 feeds (7d)
← Back to list
—
CVE-2026-46334
opensips · opensips

OpenSIPS: Denial of Service in SDP bandwidth parsing via QoS SDP cloning

Description

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions prior to 3.6.6 and 4.0.0-rc1 contain a denial of service vulnerability in the SDP bandwidth-line parsing logic. A SIP request with Content-Type: application/sdp and a malformed session-level SDP bandwidth line missing the required colon delimiter can corrupt parsed SDP bandwidth metadata. When a route or module subsequently clones the corrupted SDP state, as occurs with dialog and QoS processing, the OpenSIPS worker process crashes. An unauthenticated remote attacker can therefore trigger a crash in any configuration whose routing script parses attacker-controlled SDP and applies dialog/QoS processing. This issue has been fixed in versions 3.6.6 and 4.0.0-rc1.

Affected Products

VendorProductVersions
opensipsopensips>= 3.4.0, < 3.6.6, >= 4.0.0-beta, < 4.0.0-rc1

References

  • https://github.com/OpenSIPS/opensips/security/advisories/GHSA-rh36-mhpv-cx2r(x_refsource_CONFIRM)
  • https://github.com/OpenSIPS/opensips/commit/8fe74b01f6fbf86c0b5e290735275530cb65e0fb(x_refsource_MISC)
  • https://github.com/OpenSIPS/opensips/commit/ac5309d5b8206cd3dbe1b4e01567c8db1ce31444(x_refsource_MISC)

Related News (1 articles)

Tier C
VulDB21d ago
CVE-2026-46334 | OpenSIPS up to 3.6.5 SDP bandwidth-line parsing logic resource consumption
→ No new info (linked only)
CISA KEV❌ No
Actively exploited❌ No
CWECWE-476, CWE-20
PublishedAug 4, 2026
Trending Score4
Source articles1
Independent1
Info Completeness0/14
Missing: cve_id, title, description, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-45537
OpenSIPS: Global Buffer Overflow in construct_uri
Trending: 6
CRITICALCVE-2026-45538
OpenSIPS: Stack Buffer Overflow in sip_to_json() Header Name Copy
Trending: 6
HIGHCVE-2026-45103
OpenSIPS: SIP Message Smuggling via TCP Content-Length Integer Overflow
Trending: 5
CRITICALCVE-2026-45100
OpenSIPS: Buffer Overflow in Base64 Encode Transformation
Trending: 5
NONECVE-2026-45084
OpenSIPS: Denial of service in presence.handle_publish() from unchecked Content-Type state
Trending: 4

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Aug 4, 2026
Discovered by ZDM
Aug 5, 2026