The Usrsctp Project maintains a lightweight, userland implementation of the SCTP protocol used for reliable message delivery in telecommunications and WebRTC applications, with a narrow but strategically embedded product footprint. The observed vulnerability pattern centers on out-of-bounds read conditions within the protocol parser, reflecting the memory-access precision demands of a protocol stack implementation; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Usrsctp Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-20503MEDIUM usrsctp before 2019-12-20 has out-of-bounds reads in sctp_load_addresses_from_init. | Mar 6, 2020 | 6.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Usrsctp Project.
Media articles that mention a CVE ID that affects a product developed by Usrsctp Project — matched by CVE ID, not by vendor name.