Bzrtp Project maintains a specialized cryptographic library focused on ZRTP protocol implementation for secure real-time communications, with a narrowly scoped product footprint. The observed vulnerability signal centers on input-validation and protocol-handling concerns characteristic of cryptographic protocol libraries. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Bzrtp Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2016-6271HIGH The Bzrtp library (aka libbzrtp) 1.0.x before 1.0.4 allows man-in-the-middle attackers to conduct spoofing attacks by leveraging a missing HVI check on DHPart2 packet reception. | Jan 18, 2017 | 7.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Bzrtp Project.
Media articles that mention a CVE ID that affects a product developed by Bzrtp Project — matched by CVE ID, not by vendor name.