VYPR
Critical severity9.8NVD Advisory· Published Sep 12, 2026

CVE-2026-90558

CVE-2026-90558

Description

sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attribute formatting routines when header values exceed the 255-byte buffer limit. Attackers can craft malicious SIP packets with oversized Call-ID, X-Call-ID, or other header fields to overflow stack buffers and cause crashes or execute arbitrary code during packet parsing and rendering.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Irontec/Sngrepreferences2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: <=1.8.4

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.