Fixing crashes due to bad RTCP handling when using SRTP

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi,

What about just updating rdb.c, will that solve it? We may not be able to
afford updating the whole libSRTP in this near future as we're nearing a
release.

Best regards,
 Benny

On Mon, Apr 2, 2012 at 6:02 PM, Sa?l Ibarra Corretg?
<saul at ag-projects.com>wrote:

> Doh, apparently there is no release for the 1.5 version, so the update
> would need to be done against the latest CVS version.
>
> On Apr 2, 2012, at 12:52 PM, Sa?l Ibarra Corretg? wrote:
>
> > Hi all,
> >
> > When using SRTP I've seen a number of crashes when handling RTCP, and
> backtraces pointed at rdb_add_index function from libsrtp. Sorry, I have no
> coredumps available right now, but trust me, this happens.
> >
> > Apparently this is a bug in libsrtp 1.4.4 (the one bundled with PJSIP)
> which also manifests in other software applications such as Asterisk (
> https://issues.asterisk.org/jira/browse/ASTERISK-16665).
> >
> > There is a fix for this in libsrtp 1.5 (
> http://srtp.cvs.sourceforge.net/viewvc/srtp/srtp/crypto/replay/rdb.c?r1=1.4&r2=1.5)
> so maybe it's a good time to upgrade the bundled libsrtp :-)
> >
> >
> > Kind regards,
> >
> > --
> > Sa?l Ibarra Corretg?
> > AG Projects
> >
> >
> >
> >
> > _______________________________________________
> > Visit our blog: http://blog.pjsip.org
> >
> > pjsip mailing list
> > pjsip at lists.pjsip.org
> > http://lists.pjsip.org/mailman/listinfo/pjsip_lists.pjsip.org
>
> --
> Sa?l Ibarra Corretg?
> AG Projects
>
>
>
>
> _______________________________________________
> Visit our blog: http://blog.pjsip.org
>
> pjsip mailing list
> pjsip at lists.pjsip.org
> http://lists.pjsip.org/mailman/listinfo/pjsip_lists.pjsip.org
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.pjsip.org/pipermail/pjsip_lists.pjsip.org/attachments/20120402/9973e563/attachment-0001.html>


[Index of Archives]     [Asterisk Users]     [Asterisk App Development]     [Linux ARM Kernel]     [Linux ARM]     [Linux Omap]     [Fedora ARM]     [IETF Annouce]     [Security]     [Bugtraq]     [Linux]     [Linux OMAP]     [Linux MIPS]     [Linux API]
  Powered by Linux