Vulnerabilities > Centericq

DATE CVE VULNERABILITY TITLE RISK
2007-01-10 CVE-2007-0160 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Centericq
Stack-based buffer overflow in the LiveJournal support (hooks/ljhook.cc) in CenterICQ 4.9.11 through 4.21.0, when using unofficial LiveJournal servers, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by adding the victim as a friend and using long (1) username and (2) real name strings.
network
low complexity
centericq CWE-119
7.5
2005-11-20 CVE-2005-3694 Remote Denial of Service vulnerability in Centericq 4.20.0R3
centericq 4.20.0-r3 with "Enable peer-to-peer communications" set allows remote attackers to cause a denial of service (segmentation fault and crash) via short zero-length packets, and possibly packets of length 1 or 2, as demonstrated using Nessus.
network
low complexity
centericq
7.8
2005-07-26 CVE-2005-1852 Numeric Errors vulnerability in multiple products
Multiple integer overflows in libgadu, as used in Kopete in KDE 3.2.3 to 3.4.1, ekg before 1.6rc3, GNU Gadu, CenterICQ, Kadu, and other packages, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an incoming message.
network
low complexity
ekg kde centericq kadu CWE-189
7.5
2005-07-18 CVE-2005-1914 Unspecified vulnerability in Centericq
CenterICQ 4.20.0 and earlier creates temporary files with predictable file names, which allows local users to overwrite arbitrary files via a symlink attack on the gg.token.PID temporary file.
local
low complexity
centericq
2.1