CVE-2026-49475
Last modified
CVE-2026-49475 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation that runs on any commodity hardware. Prior to version 1.11.0, a STUN packet whose declared attribute length is shorter than the structure the parser casts to causes the parser to read and write past the end of the attribute, producing an out-of-bounds memory access on the per-leg media buffer. EPSS estimates a 0.28% chance of exploitation in the next 30 days.
Description
FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation that runs on any commodity hardware. Prior to version 1.11.0, a STUN packet whose declared attribute length is shorter than the structure the parser casts to causes the parser to read and write past the end of the attribute, producing an out-of-bounds memory access on the per-leg media buffer. This issue has been patched in version 1.11.0.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Freeswitch | Freeswitch | < 1.11.0 |
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-49475?
How severe is CVE-2026-49475?
How do I fix CVE-2026-49475?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-49469GLPI is a free asset and IT management software package. Fro…4.6
- CVE-2026-4947Addressed a potential insecure direct object reference (IDOR…7.1
- CVE-2026-49470GLPI is a free asset and IT management software package. Fro…7.7
- CVE-2026-49471Serena is a powerful MCP toolkit for coding that provides se…8.3
- CVE-2026-49472FreeSWITCH is a Software Defined Telecom Stack enabling the …5.3
- CVE-2026-49473@cedar-policy/authorization-for-expressjs is an open-source …8.8
- CVE-2026-49476Soup Sieve is a CSS selector library designed to be used wit…7.5
- CVE-2026-49477Soup Sieve is a CSS selector library designed to be used wit…7.5
- CVE-2026-49478Fulcio is a certificate authority for issuing code signing c…8.7
- CVE-2026-4948A flaw was found in firewalld. A local unprivileged user can…5.5
- CVE-2026-49481UpSnap is a wake on lan web app. Versions prior to 5.4.0 hav…9.6
- CVE-2026-49482ClipBucket v5 is an open source video sharing platform. Prio…4.3
Are you affected by CVE-2026-49475?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
