CVE-2026-42800

NULL pointer dereference vulnerability in ASR1903 in ASR Lapwing_Linux on Linux (ims_client modules) allows Pointer Manipulation. This vulnerability is associated with program files sip/utils/src/sipuri.c.
References
Link Resource
https://www.asrmicro.com/en/goods/psirt?cid=44 Vendor Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:asrmicro:asr1901_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:asrmicro:asr1901:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:asrmicro:asr1903_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:asrmicro:asr1903:-:*:*:*:*:*:*:*

History

05 May 2026, 02:54

Type Values Removed Values Added
First Time Asrmicro
Asrmicro asr1903 Firmware
Asrmicro asr1903
Asrmicro asr1901
Asrmicro asr1901 Firmware
CPE cpe:2.3:h:asrmicro:asr1901:-:*:*:*:*:*:*:*
cpe:2.3:o:asrmicro:asr1903_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:asrmicro:asr1903:-:*:*:*:*:*:*:*
cpe:2.3:o:asrmicro:asr1901_firmware:*:*:*:*:*:*:*:*
References () https://www.asrmicro.com/en/goods/psirt?cid=44 - () https://www.asrmicro.com/en/goods/psirt?cid=44 - Vendor Advisory

30 Apr 2026, 15:09

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-30 10:16

Updated : 2026-05-05 02:54


NVD link : CVE-2026-42800

Mitre link : CVE-2026-42800

CVE.ORG link : CVE-2026-42800


JSON object : View

Products Affected

asrmicro

  • asr1903
  • asr1903_firmware
  • asr1901
  • asr1901_firmware
CWE
CWE-476

NULL Pointer Dereference