VYPR
Vendor

Belledonne Communications

Products
4
CVEs
4
Across products
4
Status
Private

Products

4

Recent CVEs

4
  • CVE-2026-71980HigAug 17, 2026
    risk 0.49cvss 7.5epss 0.00

    Belledonne Communications bcg729 through 1.1.2 contains an out-of-bounds read vulnerability in the decodeSIDframe() function in src/cng.c that allows unauthenticated network-adjacent attackers to trigger a heap read beyond buffer boundaries by sending a zero-length comfort-noise…

  • CVE-2025-0430HigJan 17, 2025
    risk 0.49cvss 7.5epss 0.00

    Belledonne Communications Linphone-Desktop is vulnerable to a NULL Dereference vulnerability, which could allow a remote attacker to create a denial-of-service condition.

  • CVE-2016-6271HigJan 18, 2017
    risk 0.49cvss 7.5epss 0.02

    The Bzrtp library (aka libbzrtp) 1.0.x before 1.0.4 allows man-in-the-middle attackers to conduct spoofing attacks by leveraging a missing HVI check on DHPart2 packet reception.

  • CVE-2021-43611HigNov 12, 2021
    risk 0.00cvss 7.5epss 0.01

    Belledonne Belle-sip before 5.0.20 can crash applications such as Linphone via " \ " in the display name of a From header.