CVE-2026-57161High· 8.2▾ TwilightPJSIP is a free and open source multimedia communication library written in C. Prior to commit acc03b5, a stack buffer overflow exists in PJSUA when processing Service-Route headers in a registration response (update_service_route() in p…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 45.1 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake.
Exploit-prediction probability, daily snapshots since Sep 8.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
0.3%
Last analysed / modified upstream
8.2 → —
high → none
— → 8.2
none → high
8.2 → —
high → none
— → 8.2
none → high
8.2 → —
high → none
— → 8.2
none → high
PJSIP is a free and open source multimedia communication library written in C. Prior to commit acc03b5, a stack buffer overflow exists in PJSUA when processing Service-Route headers in a registration response (update_service_route() in pjsua_acc.c). This affects applications that register using the PJSUA/PJSUA2 account API (the default registration path). The Service-Route URIs from a 2xx response to REGISTER are stored into a fixed-size array without bounding the number of headers; a registrar that returns an excessive number of Service-Route headers can write past the end of the array on the stack. The values written are internal pointers rather than arbitrary data, so the most likely impact is unexpected application termination (denial of service), though memory corruption cannot be excluded. The malicious response may come from a compromised or malicious registrar, or — over unprotected transports — a spoofed response. This issue has been patched via commit acc03b5.
pjsip <= 2.17Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Field changes observed since this record was first indexed.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-57166Medium· 5.3PJSIP is a free and open source multimedia communication library written in C
CVE-2026-57165Medium· 5.3PJSIP is a free and open source multimedia communication library written in C
CVE-2026-57162Critical· 9.1PJSIP is a free and open source multimedia communication library written in C
CVE-2026-57163Critical· 9.1PJSIP is a free and open source multimedia communication library written in C
CVE-2026-57160Medium· 5.3PJSIP is a free and open source multimedia communication library written in C
CVE-2026-57159High· 7.5PJSIP is a free and open source multimedia communication library written in C