Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2004-0500
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2004-0500

Description:
Buffer overflow in the MSN protocol plugins (1) object.c and (2) slp.c for Gaim before 0.82 allows remote attackers to cause a denial of service and possibly execute arbitrary code via MSNSLP protocol messages that are not properly handled in a strncpy call.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/16920

SUSE
  http://www.novell.com/linux/security/advisories/2004_25_gaim.html

REDHAT
  http://www.redhat.com/support/errata/RHSA-2004-400.html

MANDRAKE
  http://www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:081

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200408-12.xml
  http://www.gentoo.org/security/en/glsa/glsa-200408-27.xml

FEDORA
  http://www.fedoranews.org/updates/FEDORA-2004-278.shtml
  http://www.fedoranews.org/updates/FEDORA-2004-279.shtml

CONFIRM
  http://gaim.sourceforge.net/security/?id=0

BID
  10865


Return to the previous page.