๐Ÿ” CVE Alert

CVE-2026-90558

CRITICAL 9.8

sngrep through 1.8.4 Stack Buffer Overflow via SIP Headers

CVSS Score
9.8
EPSS Score
0.0%
EPSS Percentile
0th

sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attribute formatting routines when header values exceed the 255-byte buffer limit. Attackers can craft malicious SIP packets with oversized Call-ID, X-Call-ID, or other header fields to overflow stack buffers and cause crashes or execute arbitrary code during packet parsing and rendering.

CWE CWE-121
Vendor irontec
Product sngrep
Published Sep 12, 2026
Last Updated Sep 14, 2026
Stay Ahead of the Next One

Get instant alerts for irontec sngrep

Be the first to know when new critical vulnerabilities affecting irontec sngrep are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High

Affected Versions

irontec / sngrep
0 โ‰ค 1.8.4

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/irontec/sngrep/commit/1ff74ee3ab5ff280e8ba976aa8c744dca57eb35b github.com: https://github.com/irontec/sngrep github.com: https://github.com/irontec/sngrep/blob/v1.8.4/src/sip_call.c#L260 github.com: https://github.com/irontec/sngrep/blob/v1.8.4/src/sip_msg.c#L150 vulncheck.com: https://www.vulncheck.com/advisories/sngrep-through-1.8.4-stack-buffer-overflow-via-sip-headers

Credits

Tristan Madani