CVE-2005-0967

7 documents6 sources
Severity
5.0MEDIUM
EPSS
3.6%
top 12.22%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 2
Latest updateMay 1

Description

Gaim 1.2.0 allows remote attackers to cause a denial of service (application crash) via a malformed file transfer request to a Jabber user, which leads to an out-of-bounds read.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDrob_flynn/gaim1.2.0

Patches

🔴Vulnerability Details

2
GHSA
GHSA-6q7m-4m7c-x25p: Gaim 12022-05-01
CVEList
CVE-2005-0967: Gaim 12005-04-06

📋Vendor Advisories

2
Ubuntu
Gaim vulnerabilities2005-05-13
Red Hat
security flaw2005-03-28

💬Community

2
Bugzilla
CVE-2005-0967 security flaw2018-08-16
Bugzilla
CAN-2005-0208,0472,0473,0965,0966,0967 gaim security issues2005-03-10