Lucene search

K
ubuntucveUbuntu.comUB:CVE-2008-5657
HistoryDec 17, 2008 - 12:00 a.m.

CVE-2008-5657

2008-12-1700:00:00
ubuntu.com
ubuntu.com
5

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

0.012 Low

EPSS

Percentile

85.2%

CRLF injection vulnerability in Quassel Core before 0.3.0.3 allows remote
attackers to spoof IRC messages as other users via a crafted CTCP message.

Notes

Author Note
mdeslaur 0.4 is affected in git before october 26th

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

0.012 Low

EPSS

Percentile

85.2%