Lucene search

K
ubuntucveUbuntu.comUB:CVE-2011-5129
HistoryAug 30, 2012 - 12:00 a.m.

CVE-2011-5129

2012-08-3000:00:00
ubuntu.com
ubuntu.com
7

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

0.81 High

EPSS

Percentile

98.4%

Heap-based buffer overflow in XChat 2.8.9 and earlier allows remote
attackers to cause a denial of service (crash) and possibly execute
arbitrary code via a long response string.

Bugs

Notes

Author Note
tyhicks According to the exploit, specific to xchat in KDE Per Novell bugzilla, requires malicious IRC server Fix not available, so I’m not sure if it affects xchat-gnome at this time
mdeslaur Not a security issue, see details in redhat bug.

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

0.81 High

EPSS

Percentile

98.4%