PatchSiren

baresip CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL baresip CVE published 2026-08-18

CVE-2026-50161

CVE-2026-50161 is a critical vulnerability in the libre library, which is used for real-time communications with asynchronous input and output support. The vulnerability exists in the websock_decode() function in src/websock/websock.c and can cause an integer overflow when validating a masked WebSocket frame that uses the 64-bit extended length encoding. This can lead to heap corruption or denial of servi [truncated]