bugs.debian.orgConfirmation
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=334089 CVE-2005-3694
CenterICQ 4.20/4.5 - Packet Handling Remote Denial of Service
Record summary
CVE-2005-3694 has a selected CVSS score of 7.8; EIP currently links 1 catalogued exploit.
Description
centericq 4.20.0-r3 with "Enable peer-to-peer communications" set allows remote attackers to cause a denial of service (segmentation fault and crash) via short zero-length packets, and possibly packets of length 1 or 2, as demonstrated using Nessus.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBCenterICQ 4.20/4.5 - Packet Handling Remote Denial of ServiceExploitDB exploitby Wernfried HaasNot analyzed1 file
References
1117798Third-party advisory
http://secunia.com/advisories/17798 17818Third-party advisory
http://secunia.com/advisories/17818 18081Third-party advisory
http://secunia.com/advisories/18081 GLSA-200512-11Vendor advisory
http://security.gentoo.org/glsa/glsa-200512-11.xml DSA-912Vendor advisory
http://www.debian.org/security/2005/dsa-912 21270vdb entry
http://www.osvdb.org/21270 15649vdb entry
http://www.securityfocus.com/bid/15649 bugs.gentoo.orgConfirmation
https://bugs.gentoo.org/show_bug.cgi?id=100519 centericq-zero-length-dos(23327)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/23327 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2005-3694