Gaim 0.75版本存在多个缓冲区溢出漏洞。远程攻击者借助以下代码导致服务拒绝以及可能执行任意代码。这些代码有(1)导致空字节写入超过缓冲区的yahoo_decode八进制编码,(2)导致内存引用指针超过终止空字节的yahoo_decode八进制编码,(3)导致空字节写入超过缓冲区的gaim_quotedp_decode MIME编码器引用的可打印字符串,以及(4)导致内存引用指针超过终止空字节的gaim_quotedp_decode引用的可打印字符串。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2003-0987 | Apache mod_digest客户提供Nonce确认漏洞 | |
| CVE-2004-0002 | FreeBSD NetINet TCP MSS大小远程拒绝服务漏洞 | |
| CVE-2004-0003 | Linux Kernel R128 设备驱动未明权限提升漏洞 |
No comments yet