ELSA-2020-3873

ELSA-2020-3873 - libsrtp security and bug fix update

Type:SECURITY
Severity:MODERATE
Release Date:2020-10-06

Description


[1.4.4-11.20101004cvs]
- Fix global buffer overflow
Resolves: bz#1301202

- Fix improper handling of CSRC count and extension header length in RTP header
Resolves: bz#1323705

- Fix buffer overflow in application of crypto profiles
Resolves: bz#1141897


Related CVEs


CVE-2013-2139
CVE-2015-6360

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (aarch64) libsrtp-1.4.4-11.20101004cvs.el7.src.rpmf7d4ecfd3787913142d0d02f79c50fc3-
libsrtp-1.4.4-11.20101004cvs.el7.aarch64.rpmd2328a3af682674771dc9d6d8332aa52-
libsrtp-devel-1.4.4-11.20101004cvs.el7.aarch64.rpmbf03828227d626fc796a304df9e00c1d-
Oracle Linux 7 (x86_64) libsrtp-1.4.4-11.20101004cvs.el7.src.rpmf7d4ecfd3787913142d0d02f79c50fc3-
libsrtp-1.4.4-11.20101004cvs.el7.i686.rpm20415b9c6956b2e0dcf50cb99450a6af-
libsrtp-1.4.4-11.20101004cvs.el7.x86_64.rpm765434f033a54a0e583e7764c1a3664b-
libsrtp-devel-1.4.4-11.20101004cvs.el7.i686.rpm350625bd4c9ef4e01ed70a12b96095fc-
libsrtp-devel-1.4.4-11.20101004cvs.el7.x86_64.rpmf3853db8f76afc1fcf60c976ff406975-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete