PT-2005-4633 · Gadu Gadu · Gadu-Gadu

Blazej Miga

+1

·

Publicado

2005-11-29

·

Atualizado

2017-07-20

·

CVE-2005-3889

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Gadu-Gadu version 7.20
Description The issue allows remote attackers to cause a denial of service by sending multiple DCC packets with a code of 6 or 7. This triggers a large number of popup windows to the user and creates a large number of threads.
Recommendations For Gadu-Gadu version 7.20, consider disabling the handling of DCC packets with codes 6 or 7 as a temporary workaround until a patch is available. Restrict access to the feature that processes these packets to minimize the risk of exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2005-3889

Produtos afetados

Gadu-Gadu