Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2004-0785
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2004-0785

Description:
Multiple buffer overflows in Gaim before 0.82 allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) Rich Text Format (RTF) messages, (2) a long hostname for the local system as obtained from DNS, or (3) a long URL that is not properly handled by the URL decoder.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/17141
  http://xforce.iss.net/xforce/xfdb/17142
  http://xforce.iss.net/xforce/xfdb/17143

ST
  1011083

SAID
  Secunia Advisory: SA12929
  Secunia Advisory: SA13101
  Secunia Advisory: SA12383
  Secunia Advisory: SA12480

REDHAT
  http://www.redhat.com/support/errata/RHSA-2004-400.html

OSVDB
  9263
  9262
  9261

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200408-27.xml

FEDORA
  http://www.fedoranews.org/updates/FEDORA-2004-279.shtml
  http://www.fedoranews.org/updates/FEDORA-2004-278.shtml

CONFIRM
  http://gaim.sourceforge.net/security/?id=5
  http://gaim.sourceforge.net/security/?id=4
  http://gaim.sourceforge.net/security/?id=3

BID
  11056


Return to the previous page.