Loading
PJSIP is a free and open source multimedia communication library written in C. Prior to version 2.17, there is a stack buffer overflow vulnerability when pjmedia-codec parses an RTP payload contain more frames than the caller-provided frames can hold. This issue has been patched in version 2.17.
Cite this page
CVE-2026-29068. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2026-29068
Use CWE-121, Pjsip vendor hub and Pjsip product page to widen CVE-2026-29068 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2022-39269, CVE-2026-28799 and CVE-2026-40614 for nearby disclosures in the same product family.