Lucene search

K
cveMitreCVE-2007-6103
HistoryNov 23, 2007 - 8:46 p.m.

CVE-2007-6103

2007-11-2320:46:00
CWE-20
mitre
web.nvd.nist.gov
23
cve-2007-6103
ihu
remote code execution
denial of service
security vulnerability

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

6.7

Confidence

High

EPSS

0.095

Percentile

94.9%

I Hear U (IHU) 0.5.6 and earlier allows remote attackers to cause (1) a denial of service (infinite loop) via a packet that contains zero in the size field in its header, which is improperly handled by the Receiver::processPacket function; and (2) a denial of service (daemon crash) via an (a) IHU_INFO_INIT or a (b) IHU_INFO_RING packet that does not specify the mode, which is improperly handled by the Player::ring function in Player.cpp.

Affected configurations

Nvd
Node
ihui_hear_uRange0.5.6
VendorProductVersionCPE
ihui_hear_u*cpe:2.3:a:ihu:i_hear_u:*:*:*:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

6.7

Confidence

High

EPSS

0.095

Percentile

94.9%