CVE-2026-93962

NameCVE-2026-93962
DescriptionA weakness has been identified in Kamailio up to 5.8.8/6.0.7/6.1.4/6.2.0-dev1. The impacted element is the function shm_malloc of the file src/modules/cdp/receiver.c of the component CDP Diameter Receiver. Executing a manipulation can lead to heap-based buffer overflow. It is possible to launch the attack remotely. The exploit has been made available to the public and could be used for attacks. Upgrading to version 6.0.8 is sufficient to resolve this issue. This patch is called 38711a3e788de0130d48cb485578c482b57d9351/4f62235b6f477b649c5cc18b0c81b4e26c949b98/4f62235b6f477b649c5cc18b0c81b4e26c949b98. You should upgrade the affected component.
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs1149730

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
kamailio (PTS)bookworm5.6.3-2vulnerable
trixie6.0.1-1+deb13u1vulnerable
trixie (security)6.0.1-1+deb13u2vulnerable
forky, sid6.1.4-1vulnerable

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
kamailiosource(unstable)(unfixed)1149730

Notes

[trixie] - kamailio <postponed> (Minor issue, fix along with future DSA)
https://github.com/kamailio/kamailio/issues/4876
https://github.com/kamailio/kamailio/pull/4877
Fixed by: https://github.com/kamailio/kamailio/commit/38711a3e788de0130d48cb485578c482b57d9351 (master)

Search for package or bug name: Reporting problems