An issue was discovered in janus-gateway (aka Janus WebRTC Server) through 0.10.0. janusgetcodecfrompt in utils.c has a Buffer Overflow via long value in an SDP Offer packet.
{
"binaries": [
{
"binary_name": "janus",
"binary_version": "0.2.6-1build2"
},
{
"binary_name": "janus-demos",
"binary_version": "0.2.6-1build2"
},
{
"binary_name": "janus-dev",
"binary_version": "0.2.6-1build2"
},
{
"binary_name": "janus-tools",
"binary_version": "0.2.6-1build2"
}
]
}
{
"binaries": [
{
"binary_name": "janus",
"binary_version": "0.7.3-2build1"
},
{
"binary_name": "janus-demos",
"binary_version": "0.7.3-2build1"
},
{
"binary_name": "janus-dev",
"binary_version": "0.7.3-2build1"
},
{
"binary_name": "janus-tools",
"binary_version": "0.7.3-2build1"
},
{
"binary_name": "libjs-janus",
"binary_version": "0.7.3-2build1"
}
]
}