CVE-2023-28095 is a denial-of-service vulnerability affecting OpenSIPS versions prior to 3.1.7 and 3.2.4. A flaw in the msg_translator.c:2628 function could lead to a server crash, but it was not reproducible against a running instance and no public function was found to trigger it. With a CVSS score of 7.5 (High), this vulnerability has a network attack vector, low attack complexity, and a potential impact of denial of service. There is currently no evidence of active exploitation, no public exploit code available, and minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 3.1.7CPE matchmatch criteria | cpe:2.3:a:opensips:opensips:*:*:*:*:*:*:*:* | ||
>= 3.2.0, < 3.2.4CPE matchmatch criteria | cpe:2.3:a:opensips:opensips:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.