{"id":"CVE-2023-28097","summary":"OpenSIPS has vulnerability in the Content-Length Parser","details":"OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Prior to versions 3.1.9 and 3.2.6, a malformed SIP message containing a large _Content-Length_ value and a specially crafted Request-URI causes a segmentation fault in OpenSIPS. This issue occurs when a large amount of shared memory using the `-m` flag was allocated to OpenSIPS, such as 10 GB of RAM. On the test system, this issue occurred when shared memory was set to `2362` or higher. This issue is fixed in versions 3.1.9 and 3.2.6. The only workaround is to guarantee that the Content-Length value of input messages is never larger than `2147483647`.","aliases":["GHSA-c6j5-f4h4-2xrq"],"modified":"2026-08-12T14:50:39.433415Z","published":"2023-03-15T22:03:41.362Z","database_specific":{"cna_assigner":"GitHub_M","cwe_ids":["CWE-190"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/28xxx/CVE-2023-28097.json"},"references":[{"type":"WEB","url":"https://opensips.org/pub/audit-2022/opensips-audit-technical-report-full.pdf"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/28xxx/CVE-2023-28097.json"},{"type":"ADVISORY","url":"https://github.com/OpenSIPS/opensips/security/advisories/GHSA-c6j5-f4h4-2xrq"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-28097"},{"type":"FIX","url":"https://github.com/OpenSIPS/opensips/commit/7cab422e2fc648f910abba34f3f0dbb3ae171ff5"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/opensips/opensips","events":[{"introduced":"0"},{"fixed":"949719bf4baeb5da9787b9c4191e061fe800d9eb"},{"introduced":"1e94abe8837fe3511fada132d67a6385d8d099a2"},{"fixed":"ce8cda891ce6cc48ff7dc2e75f683e4e45798c6c"},{"fixed":"7cab422e2fc648f910abba34f3f0dbb3ae171ff5"}],"database_specific":{"cpe":"cpe:2.3:a:opensips:opensips:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"fixed":"3.1.9"},{"introduced":"3.2.0"},{"fixed":"3.2.6"}],"source":["CPE_RANGE","REFERENCES"]}}],"versions":["3.1.8","3.2.5","3.2.4","3.1.7","3.2.3","3.1.6","3.2.2","3.1.5","3.1.4","3.2.1","3.2.0","3.1.3","3.1.2","3.1.1","3.1.0","3.1.0-beta","2.1-rc1","2.1-alpha3","2.1-alpha2","2.1-alpha1","1.11.0"],"database_specific":{"vanir_signatures":[{"signature_version":"v1","source":"https://github.com/opensips/opensips/commit/7cab422e2fc648f910abba34f3f0dbb3ae171ff5","target":{"file":"parser/parse_content.c","function":"parse_content_length"},"deprecated":false,"digest":{"function_hash":"6848378650158093967895805073516628286","length":1068},"id":"CVE-2023-28097-55a45857","signature_type":"Function"},{"digest":{"threshold":0.9,"line_hashes":["67078834281785632282143087958978028327","305485811616388374024478872877306520620","18086356100671940472344312490539213257","144985172432351953930832814874158743968","53533162700907683870716828427405267187","102202089891787504428920578848637037276","74791178262402132327858565405001492376","22283004357353493128250761423695898699","302604862688809496806181818886646809151"]},"id":"CVE-2023-28097-79afc21d","signature_type":"Line","signature_version":"v1","source":"https://github.com/opensips/opensips/commit/7cab422e2fc648f910abba34f3f0dbb3ae171ff5","target":{"file":"parser/parse_content.c"},"deprecated":false}],"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-28097.json","vanir_signatures_modified":"2026-08-12T14:50:39Z"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}