Vulnerabilities > CVE-2005-3888 - Unspecified vulnerability in Gadu-Gadu Instant Messenger 7.20

047910
CVSS 7.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
COMPLETE
network
low complexity
gadu-gadu

Summary

Memory leak in Gadu-Gadu 7.20 allows remote attackers to cause a denial of service via multiple DCC packets with a code other than 2 and a large size field, which allocates memory for the packet but does not free it after the packet has been dropped. This vulnerability probably affects all 7.x versions of Gadu-Gadu prior to 7.20.

Vulnerable Configurations

Part Description Count
Application
Gadu-Gadu
1