HIGH
BelledonneCommunications
CVE published 2026-08-17
CVE-2026-71980
CVE-2026-71980 is a high-severity vulnerability in the bcg729 library, which could allow unauthenticated network-adjacent attackers to trigger a heap read beyond buffer boundaries. This vulnerability is caused by an out-of-bounds read in the decodeSIDframe() function. A zero-length comfort-noise RTP payload can cause an integer underflow, leading to media process termination or silent consumption of adjac [truncated]