[reSIProcate] [patch] possible DoS with REFER Event: header

Robert Szokovacs robert.szokovacs at gamma.co.uk
Fri Nov 18 09:56:38 CST 2011


Hi,

When DUM receives a REFER with and "Event:" header, it will use the value 
provided by the client (see BaseSubscription.cxx:22), and later it will cause 
an assert() in ServerSubscription.cxx:208.
The attached patch fixes this and reject such request with 489.

br

Szo
-------------- next part --------------
A non-text attachment was scrubbed...
Name: resip-wrongrefer.patch
Type: text/x-patch
Size: 983 bytes
Desc: not available
URL: <http://list.resiprocate.org/pipermail/resiprocate-devel/attachments/20111118/497d1a49/attachment.bin>


More information about the resiprocate-devel mailing list