{"id":"ALPINE-CVE-2018-8828","details":"A Buffer Overflow issue was discovered in Kamailio before 4.4.7, 5.0.x before 5.0.6, and 5.1.x before 5.1.2. A specially crafted REGISTER message with a malformed branch or From tag triggers an off-by-one heap-based buffer overflow in the tmx_check_pretran function in modules/tmx/tmx_pretran.c.","modified":"2026-07-08T04:30:25.570745124Z","published":"2018-03-20T20:29:00.350Z","upstream":["CVE-2018-8828"],"references":[{"type":"ADVISORY","url":"https://security.alpinelinux.org/vuln/CVE-2018-8828"}],"affected":[{"package":{"name":"kamailio","ecosystem":"Alpine:v3.4","purl":"pkg:apk/alpine/kamailio?arch=source"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"5.0.0"},{"fixed":"4.4.0-r2"}]}],"ecosystem_specific":{},"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2018-8828.json"}},{"package":{"name":"kamailio","ecosystem":"Alpine:v3.5","purl":"pkg:apk/alpine/kamailio?arch=source"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"5.0.0"},{"fixed":"4.4.5-r1"}]}],"ecosystem_specific":{},"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2018-8828.json"}},{"package":{"name":"kamailio","ecosystem":"Alpine:v3.6","purl":"pkg:apk/alpine/kamailio?arch=source"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"5.0.0"},{"fixed":"5.0.2-r2"}]}],"ecosystem_specific":{},"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2018-8828.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}