Vulnerabilities > CVE-2007-3728 - Remote Buffer Overflow vulnerability in Silc Client and Silc Toolkit

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
silc

Summary

Buffer overflow in lib/silcclient/client_notify.c of SILC Client and SILC Toolkit before 1.1.2 allows remote attackers to cause a denial of service via "NICK_CHANGE" notifications.

Vulnerable Configurations

Part Description Count
Application
Silc
2

Statements

contributorMark J Cox
lastmodified2007-07-17
organizationRed Hat
statementNot vulnerable. libsilc was not shipped with Enterprise Linux 2.1 or 3. This issue did not affect the versions of libsilc as shipped with Red Hat Enterprise Linux 4 or 5.