CVE-2025-21487
Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is great
Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is greater than the available buffer length.
HIGH · CVSS 8.2
EPSS 0.00055
Schedule remediation
- SSVC automatable: yes - attacks can be scripted at scale
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0