Denial of Service Vulnerability in Kamailio by Kamailio Solutions
CVE-2026-52023

7.5HIGH

Key Information:

Status
Vendor
CVE Published:
1 September 2026

What is CVE-2026-52023?

A vulnerability in Kamailio versions up to 6.1.1 allows remote attackers to exploit the ims_registrar_pcscf module, specifically through the pcscf_save_pending function. This exploitation can lead to denial of service by manipulating security-agreement parsing, which adversely affects the stability and performance of the service. Addressing this issue is critical to maintaining system integrity and protecting against potential service disruptions.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.