Vulnerabilities > CVE-2005-3888 - Unspecified vulnerability in Gadu-Gadu Instant Messenger 7.20
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
COMPLETE Summary
Memory leak in Gadu-Gadu 7.20 allows remote attackers to cause a denial of service via multiple DCC packets with a code other than 2 and a large size field, which allocates memory for the packet but does not free it after the packet has been dropped. This vulnerability probably affects all 7.x versions of Gadu-Gadu prior to 7.20.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://archives.neohapsis.com/archives/fulldisclosure/2005-11/0658.html
- http://marc.info/?l=bugtraq&m=113261573023912&w=2
- http://secunia.com/advisories/17597/
- http://www.osvdb.org/21017
- http://www.osvdb.org/21018
- http://www.securityfocus.com/bid/15520/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23150