Boletines de Vulnerabilidades

DSA-3539 srtp - security update

   
Software afectado Debian
 
Randell Jesup and the Firefox team discovered that srtp, Ciscosreference implementation of the Secure Real-time Transport Protocol(SRTP), does not properly handle RTP header CSRC count and extensionheader length. A remote attacker can exploit this vulnerability to crashan application linked against libsrtp, resulting in a denial of service.

More info:

https://www.debian.org/security/2016/dsa-3539