CVE-2005-0965

8 documents6 sources
Severity
5.0MEDIUM
EPSS
1.9%
top 16.62%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 2
Latest updateMay 1

Description

The gaim_markup_strip_html function in Gaim 1.2.0, and possibly earlier versions, allows remote attackers to cause a denial of service (application crash) via a string that contains malformed HTML, which causes an out-of-bounds read.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDrob_flynn/gaim1.2.0

Patches

🔴Vulnerability Details

2
GHSA
GHSA-vcxh-4qcq-3wx7: The gaim_markup_strip_html function in Gaim 12022-05-01
CVEList
CVE-2005-0965: The gaim_markup_strip_html function in Gaim 12005-04-04

📋Vendor Advisories

2
Ubuntu
Gaim vulnerabilities2005-04-05
Red Hat
security flaw2005-04-01

💬Community

2
Bugzilla
CVE-2005-0965 security flaw2018-08-16
Bugzilla
CAN-2005-0208,0472,0473,0965,0966,0967 gaim security issues2005-03-10