An issue was discovered in janus-gateway (aka Janus WebRTC Server) through 0.10.0. janussdpmerge in sdp.c has a stack-based buffer overflow.
{
"binaries": [
{
"binary_name": "janus",
"binary_version": "0.2.6-1build2"
},
{
"binary_name": "janus-demos",
"binary_version": "0.2.6-1build2"
},
{
"binary_name": "janus-dev",
"binary_version": "0.2.6-1build2"
},
{
"binary_name": "janus-tools",
"binary_version": "0.2.6-1build2"
}
]
}
{
"binaries": [
{
"binary_name": "janus",
"binary_version": "0.7.3-2build1"
},
{
"binary_name": "janus-demos",
"binary_version": "0.7.3-2build1"
},
{
"binary_name": "janus-dev",
"binary_version": "0.7.3-2build1"
},
{
"binary_name": "janus-tools",
"binary_version": "0.7.3-2build1"
},
{
"binary_name": "libjs-janus",
"binary_version": "0.7.3-2build1"
}
]
}