The probability is the direct output of the EPSS model, and conveys an overall sense of the threat of exploitation in the wild. The percentile measures the EPSS probability relative to all known EPSS scores. Note: This data is updated daily, relying on the latest available EPSS model version. Check out the EPSS documentation for more details.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade opensips
to version 3.1.9, 3.2.6 or higher.
Affected versions of this package are vulnerable to Integer Overflow or Wraparound such that a malformed SIP message containing a large _Content-Length_
value and a specially crafted Request-URI causes a segmentation fault in OpenSIPS. This issue occurs when a large amount of shared memory using the -m
flag was allocated to OpenSIPS, such as 10 GB of RAM.
Users who are unable to upgrade should guarantee that the Content-Length
value of input messages is never larger than 2147483647
.