CVE-2026-52022
Received Received - Intake

Denial of Service in Kamailio IMS P-CSCF Registration

Vulnerability report for CVE-2026-52022, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-01

Last updated on: 2026-09-01

Assigner: MITRE

Description

An issue in kamailio v.6.1.1 and before allows a remote attacker to cause a denial of service via the IMS P-CSCF registration handling components

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-01
Last Modified
2026-09-01
Generated
2026-09-01
AI Q&A
2026-09-01
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
kamailio kamailio to 6.1.1 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability in Kamailio versions 6.1.1 and earlier involves a double memory free issue in the IMS P-CSCF registration handling components. It allows a remote attacker to cause a denial of service by triggering abnormal state handling during IMS registration processing.

Detection Guidance

Monitor Kamailio logs for segmentation faults (SIGSEGV) during IMS registration processing, particularly in the REGISTER_reply/ipsec_create path. Check for netlink errors reported by IPSec cleanup functions and memory state mismatches. High-rate registration traffic for the same user equipment may indicate exploitation attempts.

Impact Analysis

The vulnerability can cause Kamailio's P-CSCF component to crash with a segmentation fault, leading to service disruption. This occurs during high-rate IMS registration traffic for the same user equipment, where overlapping registration transactions trigger the crash.

Compliance Impact

This vulnerability causes a denial of service via IMS P-CSCF registration handling, leading to crashes in Kamailio's P-CSCF component. Such disruptions could impact availability of communication services, potentially violating compliance requirements for data processing and availability under standards like GDPR (availability principle) and HIPAA (accessibility and integrity of PHI).

Mitigation Strategies

Apply the patch from commit 91c5ca7 to add null checks in the ims_usrloc_pcscf module's free_security() function. Update to a version of Kamailio that includes this fix. Monitor and limit rapid, high-rate IMS registration traffic to prevent overlapping transactions.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-52022. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart