Authentication Bypass by Spoofing in pjsip - #VU142525
Published: August 14, 2026
Vulnerability details
The vulnerability allows a remote attacker to spoof DNS responses and poison the DNS cache.
The vulnerability exists due to improper origin validation and use of insufficiently random values in the asynchronous DNS resolver when processing incoming DNS responses for pending queries. A remote attacker can send a forged DNS response to spoof DNS responses and poison the DNS cache.
A successful attack can poison SIP-related DNS lookups and redirect SIP signaling to an attacker-controlled host.