CVE-2026-90558 Details
Description
sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attribute formatting routines when header values exceed the 255-byte buffer limit. Attackers can craft malicious SIP packets with oversized Call-ID, X-Call-ID, or other header fields to overflow stack buffers and cause crashes or execute arbitrary code during packet parsing and rendering.
A stack buffer overflow vulnerability has been identified in Sngrep versions through 1.8.4. This issue arises in the SIP attribute formatting routines, where header values exceeding 255 bytes can overflow the stack buffer. Attackers can exploit this vulnerability by crafting malicious SIP packets with oversized Call-ID, X-Call-ID, or other header fields. The overflow can lead to crashes or allow arbitrary code execution during the parsing and rendering of the packets.
Users can update to Sngrep version 1.8.4 or later, where this vulnerability has been fixed.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Sep 12, 2026CISA-ADP
Assessed Sep 14, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/irontec/sngrep | [email protected] | ProductVendor |
| https://github.com/irontec/sngrep/blob/v1.8.4/src/sip_call.c#L260 | [email protected] | Source CodeVendor |
| https://github.com/irontec/sngrep/blob/v1.8.4/src/sip_msg.c#L150 | [email protected] | Source CodeVendor |
| https://github.com/irontec/sngrep/commit/1ff74ee3ab5ff280e8ba976aa8c744dca57eb35b | [email protected] | Source CodeVendor |
| https://www.vulncheck.com/advisories/sngrep-through-1.8.4-stack-buffer-overflow-via-sip-headers | [email protected] | AdvisoryRemedyVendor |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-121 | Stack-based Buffer Overflow | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| Irontec sngrep | <= 1.8.4 (semver) |
CPE
Remediation
| |
Change History
2 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Sep 14, 2026 | CVE Modified | CISA-ADP |
| Sep 12, 2026 | New CVE Received | [email protected] |
Volerion