Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in BarnOwl before 1.5.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted CC: header.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
BarnOwl CC:字符串处理堆溢出漏洞
Vulnerability Description
BarnOwl是基于curses库的即时消息客户端,目前支持Zephyr、AIM、Jabber和IRC通讯协议。 BarnOwl客户端的owl_message_get_cc_without_recipient()函数中存在堆溢出漏洞,远程攻击者可以通过在聊天消息中包含超长的CC:字符串来触发这个溢出,导致执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A