The OpenH323 Project develops open-source H.323 telephony and multimedia libraries (OpenH323 and PWLib) that serve as protocol implementations for VoIP and real-time communications applications across varied deployments. The observed vulnerability signal centers on improper input validation in packet and protocol-parsing code, a characteristic weakness class in protocol-handling libraries where malformed or unexpected input can trigger unexpected behavior. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Openh323 Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2004-0097HIGH Multiple vulnerabilities in PWLib before 1.6.0 allow remote attackers to cause a denial of service and possibly execute arbitrary code, as demonstrated by the NISCC/OUSPG PROTOS te | Mar 3, 2004 | 10.0 | 29 | NO | NO |
CVE-2007-4924MEDIUM The Open Phone Abstraction Library (opal), as used by (1) Ekiga before 2.0.10 and (2) OpenH323 before 2.2.4, allows remote attackers to cause a denial of service (crash) via an inv | Oct 8, 2007 | 5.0 | 28 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Openh323 Project.
Media articles that mention a CVE ID that affects a product developed by Openh323 Project — matched by CVE ID, not by vendor name.