gaim.sourceforge.netConfirmation
http://gaim.sourceforge.net/security/index.php?id=16 CVE-2005-1261
Gaim 1.2.1 - URL Handling Remote Stack Overflow
Record summary
CVE-2005-1261 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
Stack-based buffer overflow in the URL parsing function in Gaim before 1.3.0 allows remote attackers to execute arbitrary code via an instant message (IM) with a large URL.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBGaim 1.2.1 - URL Handling Remote Stack OverflowExploitDB exploitby RonNot analyzed1 file
References
8RHSA-2005:429Vendor advisory
http://www.redhat.com/support/errata/RHSA-2005-429.html RHSA-2005:432Vendor advisory
http://www.redhat.com/support/errata/RHSA-2005-432.html FLSA:158543Vendor advisory
http://www.securityfocus.com/archive/1/426078/100/0/threaded 13590vdb entry
http://www.securityfocus.com/bid/13590 ADV-2005-0519vdb entry
http://www.vupen.com/english/advisories/2005/0519 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2005-1261 oval:org.mitre.oval:def:10725vdb entrysignature
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10725