Download
| Alert*
oval:org.secpod.oval:def:70337
coturn: TURN and STUN server for VoIP coTURN could be made to crash or run programs if it received specially crafted network traffic. oval:org.secpod.oval:def:119311 The Coturn TURN Server is a VoIP media traffic NAT traversal server and gateway. It can be used as a general-purpose network traffic TURN server/gateway, too. This implementation also includes some extra features. Supported RFCs: TURN specs: - RFC 5766 - base TURN specs - RFC 6062 - TCP relaying TUR ... oval:org.secpod.oval:def:119309 The Coturn TURN Server is a VoIP media traffic NAT traversal server and gateway. It can be used as a general-purpose network traffic TURN server/gateway, too. This implementation also includes some extra features. Supported RFCs: TURN specs: - RFC 5766 - base TURN specs - RFC 6062 - TCP relaying TUR ... oval:org.secpod.oval:def:1801952 Bypass of Coturn"s default access control protection (upgrade to coturn 4.5.2 needed) oval:org.secpod.oval:def:605393 A flaw was discovered in coturn, a TURN and STUN server for VoIP. By default coturn does not allow peers on the loopback addresses . A remote attacker can bypass the protection via a specially crafted request using a peer address of "0.0.0.0" and trick coturn in relaying to the loopback interface. I ... oval:org.secpod.oval:def:69849 A flaw was discovered in coturn, a TURN and STUN server for VoIP. By default coturn does not allow peers on the loopback addresses . A remote attacker can bypass the protection via a specially crafted request using a peer address of "0.0.0.0" and trick coturn in relaying to the loopback interface. I ... oval:org.secpod.oval:def:705847 coturn: TURN and STUN server for VoIP coTURN could be made to crash or run programs if it received specially crafted network traffic. |