Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Joerg Kurlbaum

#49640of 53,635
5Total CVSS
Vulnerabilities · 1
PT-2005-5358
5.0
2005-12-31
Unknown · Gaim-Encryption · CVE-2005-4693
**Name of the Vulnerable Software and Affected Versions** Gaim-Encryption version 2.38-1 **Description** The issue allows remote attackers to cause a denial of service, resulting in a crash, by sending a crafted message from an ICQ buddy. This might involve the `GE received key` function in keys.c. **Recommendations** For Gaim-Encryption version 2.38-1, consider disabling the `GE received key` function in keys.c as a temporary workaround until a patch is available. Restrict access to ICQ buddy messages to minimize the risk of exploitation.