CVE-2025-12204 | Kamailio 5.5 Configuration File src/core/rvalue.c rve_destroy heap-based overflow
A vulnerability was found in Kamailio 5.5. It has been classified as problematic. Impacted is the function rve_destroy of the file src/core/rvalue.c of the component Configuration File Handler. The manipulation leads to heap-based buffer overflow.
This vulnerability is listed as CVE-2025-12204. The attack must be carried out locally. In addition, an exploit is available.
The vendor was contacted early about this disclosure but did not respond in any way.