Lucene search

K
cveRedhatCVE-2008-4776
HistoryOct 28, 2008 - 7:46 p.m.

CVE-2008-4776

2008-10-2819:46:09
CWE-119
redhat
web.nvd.nist.gov
43
libgadu
denial of service
cve-2008-4776
buffer over-read

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6.3

Confidence

Low

EPSS

0.002

Percentile

59.7%

libgadu before 1.8.2 allows remote servers to cause a denial of service (crash) via a contact description with a large length, which triggers a buffer over-read.

Affected configurations

Nvd
Node
wojtek_kaniewsklibgaduRange1.8.1
OR
wojtek_kaniewsklibgaduMatch1.7.0
OR
wojtek_kaniewsklibgaduMatch1.7.1
OR
wojtek_kaniewsklibgaduMatch1.7.2
OR
wojtek_kaniewsklibgaduMatch1.8.0
VendorProductVersionCPE
wojtek_kaniewsklibgadu*cpe:2.3:a:wojtek_kaniewsk:libgadu:*:*:*:*:*:*:*:*
wojtek_kaniewsklibgadu1.7.0cpe:2.3:a:wojtek_kaniewsk:libgadu:1.7.0:*:*:*:*:*:*:*
wojtek_kaniewsklibgadu1.7.1cpe:2.3:a:wojtek_kaniewsk:libgadu:1.7.1:*:*:*:*:*:*:*
wojtek_kaniewsklibgadu1.7.2cpe:2.3:a:wojtek_kaniewsk:libgadu:1.7.2:*:*:*:*:*:*:*
wojtek_kaniewsklibgadu1.8.0cpe:2.3:a:wojtek_kaniewsk:libgadu:1.8.0:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6.3

Confidence

Low

EPSS

0.002

Percentile

59.7%