In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade SIPSorcery to version 10.0.14 or higher.
Affected versions of this package are vulnerable to Improper Handling of Exceptional Conditions via the ParseChunk function. An attacker can cause the termination of the SCTP receive thread and disrupt all data channels by sending a specially crafted SCTP SACK chunk with manipulated numGapAckBlocks and numDuplicateTSNs fields, leading to out-of-bounds reads on the receive buffer.